Path Traversal Vulnerability in IBM App Connect Enterprise
CVE-2026-14519

7.5HIGH

Key Information:

Vendor

IBM

Vendor
CVE Published:
30 July 2026

What is CVE-2026-14519?

A vulnerability in IBM App Connect Enterprise allows remote attackers to exploit path traversal issues, potentially leading to unauthorized access to sensitive files. This occurs when input from an attacker is not sanitized properly, enabling the reading of arbitrary files from the system. This compromises the integrity and confidentiality of potentially sensitive data within the environment. Organizations using affected versions should prioritize applying appropriate patches and take necessary precautions to mitigate risks associated with this vulnerability.

Affected Version(s)

App Connect Enterprise 13.0.1.0 <= 13.0.7.2

App Connect Enterprise 12.0.1.0 <= 12.0.12.27

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.