CVE-2024-49338: IBM App Connect Enterprise

Medium severity, CVSS 4.9. EPSS: 0.4% chance of exploitation in the next 30 days.

IBM App Connect Enterprise 12.0.1.0 through 12.0.7.0and 13.0.1.0 under certain configurations could allow a privileged user to obtain JMS credentials.

Affected products

  • IBM App Connect Enterprise: from 12.0.1.0, before 12.0.12.8 (fixed in 12.0.12.8); version 13.0.1.0 only

Published 2025-01-18. Last modified 2026-06-17.