Evidence-linked product lifecycle intelligenceSUPPORT · SECURITY · RETIREMENT
← Search results
CVE-LINKED INVENTORY33 SECURITY RECORDS

IBM

App Connect Enterprise

Affected and fixed version statements observed in the public BlackTree CVE catalogue. These statements describe vulnerability scope, not publisher support entitlement.

Lifecycle evidence status

This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.

A missing support date does not mean the product is supported. CVE publication dates and affected-version ranges must not be interpreted as EOL dates.

CVE-observed version history

CVEPublishedAffected versionsFixed version informationPublisher evidence
CVE-2026-17133 14 Sep 2026 App Connect Enterprise: 13.0.1.0 ≤ 13.0.8.0, 12.0.1.0 ≤ 12.0.12.27 IBM strongly recommends addressing the vulnerability/vulnerabilities now by applying the appropriate fix to IBM App Connect Enterprise; Affected Product(s)Version(s)APARRemediation / FixesIBM App Connect Enterprise13.0.1.0 - 13.0.8.0IT49855; The APAR (IT49855) is available from; BM App Connect Enterprise v13- Fix Pack Release 13.0.8.1 https://www.ibm.com/support/pages/node/7281824; IBM App Connect Enterprise12.0.1.0 - 12.0.12.27IT49855; IBM App Connect Enterprise v12- Fix Pack Release 12.0.12.28 https://www.ibm.com/support/pages/node/7280244 Update reference ↗
CVE-2026-17156 14 Sep 2026 App Connect Enterprise: 13.0.1.0 ≤ 13.0.8.0, 12.0.1.0 ≤ 12.0.12.27 IBM strongly recommends addressing the vulnerability/vulnerabilities now by applying the appropriate fix to IBM App Connect Enterprise; Affected Product(s)Version(s)APARRemediation / FixesIBM App Connect Enterprise13.0.1.0 - 13.0.8.0IT49855; The APAR (IT49855) is available from; BM App Connect Enterprise v13- Fix Pack Release 13.0.8.1 https://www.ibm.com/support/pages/node/7281824; IBM App Connect Enterprise12.0.1.0 - 12.0.12.27IT49855; IBM App Connect Enterprise v12- Fix Pack Release 12.0.12.28 https://www.ibm.com/support/pages/node/7280244 Update reference ↗
CVE-2026-17416 14 Sep 2026 App Connect Enterprise: 13.0.1.0 ≤ 13.0.8.0, 12.0.1.0 ≤ 12.0.12.27 IBM strongly recommends addressing the vulnerability/vulnerabilities now by applying the appropriate fix to IBM App Connect Enterprise; Affected Product(s)Version(s)APARRemediation / FixesIBM App Connect Enterprise13.0.1.0 - 13.0.8.0IT49855; The APAR (IT49855) is available from; BM App Connect Enterprise v13- Fix Pack Release 13.0.8.1 https://www.ibm.com/support/pages/node/7281824; IBM App Connect Enterprise12.0.1.0 - 12.0.12.27IT49855; IBM App Connect Enterprise v12- Fix Pack Release 12.0.12.28 https://www.ibm.com/support/pages/node/7280244 Update reference ↗
CVE-2026-75624 10 Sep 2026 App Connect Enterprise: 13.0.1.0 ≤ 13.0.8.1, 12.0.1.0 ≤ 12.0.12.27 IBM strongly recommends addressing the vulnerability/vulnerabilities now by applying the appropriate fix to IBM App Connect Enterprise; Affected Product(s)Version(s)APARRemediation / FixesIBM App Connect Enterprise13.0.1.0 - 13.0.8.1IT49854; The APAR (IT49854) is available from; IBM App Connect Enterprise v13- Fix Pack Release 13.0.8.2 https://www.ibm.com/support/pages/download-ibm-app-connect-enterprise-13082; IBM App Connect Enterprise12.0.1.0 - 12.0.12.27IT49854; IBM App Connect Enterprise v12- Fix Pack Release 12.0.12.28 https://www.ibm.com/support/pages/download-ibm-app-connect-enterprise-1201228-fix-pack Update reference ↗
CVE-2026-16180 4 Sep 2026 13.0.1.0 ≤ 13.0.8.1; 12.0.1.0 ≤ 12.0.12.28; 10.1.0.0 ≤ 10.1.0.7 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2026-16689 4 Sep 2026 13.0.1.0 ≤ 13.0.8.1; 12.0.1.0 ≤ 12.0.12.28; 10.1.0.0 ≤ 10.1.0.7 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2026-17440 4 Sep 2026 13.0.1.0 ≤ 13.0.8.1; 12.0.1.0 ≤ 12.0.12.28; 10.1.0.0 ≤ 10.1.0.7 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2026-17442 4 Sep 2026 13.0.1.0 ≤ 13.0.8.1; 12.0.1.0 ≤ 12.0.12.28; 10.1.0.0 ≤ 10.1.0.7 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2026-17443 4 Sep 2026 13.0.1.0 ≤ 13.0.8.1; 12.0.1.0 ≤ 12.0.12.28; 10.1.0.0 ≤ 10.1.0.7 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2026-17444 4 Sep 2026 13.0.1.0 ≤ 13.0.8.1; 12.0.1.0 ≤ 12.0.12.28; 10.1.0.0 ≤ 10.1.0.7 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2026-19649 4 Sep 2026 13.0.1.0 ≤ 13.0.8.1; 12.0.1.0 ≤ 12.0.12.28; 10.1.0.0 ≤ 10.1.0.7 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2026-78543 4 Sep 2026 13.0.1.0 ≤ 13.0.8.1; 12.0.1.0 ≤ 12.0.12.28; 10.1.0.0 ≤ 10.1.0.7 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2026-81832 4 Sep 2026 13.0.1.0 ≤ 13.0.8.1; 12.0.1.0 ≤ 12.0.12.28; 10.1.0.0 ≤ 10.1.0.7 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2026-12947 30 Jul 2026 13.0.1.0 ≤ 13.0.7.2; 12.0.1.0 ≤ 12.0.12.27 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2026-15435 30 Jul 2026 13.0.1.0 ≤ 13.0.7.2; 12.0.1.0 ≤ 12.0.12.27 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2026-14522 30 Jul 2026 13.0.1.0 ≤ 13.0.7.2; 12.0.1.0 ≤ 12.0.12.27 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2026-14519 30 Jul 2026 13.0.1.0 ≤ 13.0.7.2; 12.0.1.0 ≤ 12.0.12.27 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2026-3602 30 Jun 2026 13.0.1.0 ≤ 13.0.7.2; 12.0.1.0 ≤ 12.0.12.26; 10.1.0.0 ≤ 10.1.0.7 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2026-5515 27 May 2026 13.0.1.0 ≤ 13.0.7.0 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2025-36361 24 Oct 2025 13.0.1.0 ≤ 13.0.4.2; 12.0.1.0 ≤ 12.0.12.17 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2024-49338 18 Jan 2025 12.0.1.0 ≤ 12.0.7.0; 13.0.1.0 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2024-31894 22 May 2024 12.0.1.0 ≤ 12.0.12.1 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2024-31895 22 May 2024 12.0.1.0 ≤ 12.0.12.1 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2024-31893 22 May 2024 12.0.1.0 ≤ 12.0.12.1 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2024-31904 22 May 2024 11.0.0.1 ≤ 11.0.0.25; 12.0.1.0 ≤ 12.0.12.0 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2024-28760 11 May 2024 11.0.0.1 ≤ 11.0.0.25; 12.0.1.0 ≤ 12.0.12.0 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2024-28761 11 May 2024 11.0.0.1 ≤ 11.0.0.25; 12.0.1.0 ≤ 12.0.12.0 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2024-22356 26 Mar 2024 11.0.0.1 ≤ 11.0.0.23; 12.0.1.0 ≤ 12.0.9.0; 10.1 ≤ 10.1.0.2 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2024-22317 18 Jan 2024 11.0.0.1 ≤ 11.0.0.24; 12.0.1.0 ≤ 12.0.11.0 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2023-45176 14 Oct 2023 11.0.0.1 ≤ 11.0.0.23; 12.0.1.0 ≤ 12.0.10.0; 10.1 ≤ 10.1.0.1 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2023-40682 13 Oct 2023 12.0.1.0 ≤ 12.0.8.0 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2022-42444 6 Feb 2023 11.0.0.8 < 11.0.0.19; 12.0.1.0 < 12.0.5.0 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2022-42439 6 Feb 2023 11.0.0.17 < 11.0.0.19; 12.0.4.0 < 12.0.5.0 No fixed version is explicitly recorded in the structured CVE data. Use CVE record

How this record is maintained

The CVE inventory is reconciled automatically from cve.blacktree.nl. Exact identity matches link to existing Lifecycle product or package histories. Unmatched products stay in a prioritised publisher-source research queue, and Lifecycle marks the date gap instead of inferring a support boundary from vulnerability data.