CVE-2024-52897: IBM Mq

Medium severity, CVSS 6.2. EPSS: 0.2% chance of exploitation in the next 30 days.

IBM MQ 9.2 LTS, 9.3 LTS, 9.3 CD, 9.4 LTS, and 9.4 CD web console could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned.

Affected products

  • IBM Mq: from 9.2.0.0, before 9.2.0.30 (fixed in 9.2.0.30); from 9.3.0, before 9.4.1 (fixed in 9.4.1); from 9.3.0.0, before 9.3.0.26 (fixed in 9.3.0.26); from 9.4.0.0, before 9.4.0.7 (fixed in 9.4.0.7)

Published 2024-12-19. Last modified 2026-06-17.