Known vulnerabilities in IBM API Connect - page 4

Software CPE: cpe:2.3:a:ibm_corporation:ibm_api_connect:*:*:*:*:*:*:*:*
Total vulnerabilities: 236
Public exploits: 24
Known exploited (KEV): 6
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting IBM API Connect IBM API Connect is affected by 236 known vulnerabilities: 3 critical, 28 high, 73 medium, 132 low Critical High Medium Low

Vulnerabilities (236)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU111069 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2024-4533
CWE-89 Medium
No
No
10.0.8.2 ifix2 11.06.2025 SB2025061140
SB2025061142
#VU103455 - Exposure of sensitive information to an unauthorized actor
CVE-2024-45336
CWE-200 Low
No
No
10.0.8.2 ifix2 30.01.2025 SB2025013039
SB2025013043
SB2025013044
and 38 more
#VU101777 - Improper Authorization
CVE-2024-45337
CWE-285 Medium
Available
No
10.0.8.2 ifix2 13.12.2024 SB2024121332
SB2024121333
SB2024121334
and 93 more
#VU97830 - Resource Management Errors
CVE-2024-46817
CWE-399 Low
No
No
10.0.8.2 ifix2 30.09.2024 SB2024093081
SB2024100401
SB2024102554
and 40 more
#VU97818 - Off-by-one Error
CVE-2024-46852
CWE-193 Low
No
No
10.0.8.2 ifix2 30.09.2024 SB2024093069
SB2024100401
SB2024101233
and 21 more
#VU97814 - Error Handling
CVE-2024-46841
CWE-388 Low
No
No
10.0.8.2 ifix2 30.09.2024 SB2024093066
SB2024101232
SB2024101233
and 32 more
#VU97808 - Improper Locking
CVE-2024-46840
CWE-667 Low
No
No
10.0.8.2 ifix2 30.09.2024 SB2024093060
SB2024100401
SB2024101871
and 36 more
#VU97803 - Improper Locking
CVE-2024-46829
CWE-667 Low
No
No
10.0.8.2 ifix2 30.09.2024 SB2024093055
SB2024100401
SB2024101232
and 24 more
#VU97516 - NULL Pointer Dereference
CVE-2024-46795
CWE-476 Low
No
No
10.0.8.2 ifix2 18.09.2024 SB2024091875
SB2024100401
SB2024101871
and 14 more
#VU96529 - NULL Pointer Dereference
CVE-2024-43904
CWE-476 Low
No
No
10.0.8.2 ifix2 26.08.2024 SB2024082657
SB2024091077
SB2024091146
and 21 more
#VU96493 - Improper input validation
CVE-2024-43883
CWE-20 Low
No
No
10.0.8.2 ifix2 24.08.2024 SB2024082403
SB2024090668
SB2024090669
and 43 more
#VU96200 - Improper input validation
CVE-2024-43849
CWE-20 Low
No
No
10.0.8.2 ifix2 19.08.2024 SB20240819142
SB2024091077
SB2024091080
and 21 more
#VU96187 - Resource Management Errors
CVE-2024-43841
CWE-399 Low
No
No
10.0.8.2 ifix2 19.08.2024 SB20240819127
SB2024091077
SB2024091080
and 28 more
#VU96147 - Improper Locking
CVE-2024-43855
CWE-667 Low
No
No
10.0.8.2 ifix2 19.08.2024 SB2024081988
SB2024091080
SB20240910112
and 23 more
#VU96113 - Out-of-bounds read
CVE-2024-43858
CWE-125 Low
No
No
10.0.8.2 ifix2 19.08.2024 SB2024081955
SB2024091077
SB2024091080
and 38 more
#VU93757 - Incorrect Calculation
CVE-2024-35826
CWE-682 Low
No
No
10.0.8.5 04.07.2024 SB2024070432
SB20240711180
SB20240711184
and 8 more
#VU93386 - Improper Locking
CVE-2024-35839
CWE-667 Low
No
No
10.0.8.5 26.06.2024 SB2024062677
SB2024070474
SB2024070842
and 27 more
#VU91344 - Exposure of sensitive information to an unauthorized actor
CVE-2024-35939
CWE-200 Low
No
No
10.0.8.5 08.06.2024 SB2024060867
SB2024062809
SB20240702143
and 24 more
#VU91322 - Exposure of sensitive information to an unauthorized actor
CVE-2024-36945
CWE-200 Low
No
No
10.0.8.5 08.06.2024 SB2024060838
SB2024070973
SB2024071103
and 40 more
#VU66068 - Resource exhaustion
CVE-2022-30635
CWE-400 Medium
No
No
10.0.8.5 03.08.2022 SB2022080321
SB2022080323
SB2022080324
and 86 more


Showing elements 61 - 80 out of 236