CVE-2024-52362: IBM App Connect Enterprise Certified Containers Operands
Medium severity, CVSS 6.5. EPSS: 0.5% chance of exploitation in the next 30 days.
IBM App Connect Enterprise Certified Container 7.2, 8.0, 8.1, 8.2, 9.0, 9.1, 9.2, 10.0, 10.1, 11.0, 11.1, 11.2, 11.3, 11.4, 11.5, 11.6, 12.0, 12.1, 12.2, 12.3, 12.4, 12.5, 12.6, 12.7, and 12.8 could allow an authenticated user to cause a denial of service in the App Connect flow due to improper validation of server-side input.
Affected products
- IBM App Connect Enterprise Certified Containers Operands: version 12.0.7.0 only; version 12.0.12.5 only; version 13.0.1.0 only; version 13.0.2.1 only
- IBM App Connect Operator: from 7.2, up to and including 11.6.0; from 12.0.0, before 12.9.0 (fixed in 12.9.0 ); from 12.1.0, up to and including 12.8.2; version 12.0.12 only
Published 2025-03-12. Last modified 2026-06-17.