CVE-2026-17416: IBM App Connect Enterprise

High severity, CVSS 7.8. EPSS: 0.1% chance of exploitation in the next 30 days.

IBM App Connect Enterprise 13.0.1.0 through 13.0.8.0, and 12.0.1.0 through 12.0.12.27 could allow a local attacker to execute arbitrary code due to insecure deserialization.

Affected products

  • IBM App Connect Enterprise: from 13.0.1.0, up to and including 13.0.8.0; from 12.0.1.0, up to and including 12.0.12.27

Published 2026-09-14. Last modified 2026-09-16.