CVE-2026-16689: IBM App Connect Enterprise vulnerability
Published Sep 4, 2026
·Updated
IBM App Connect Enterprise could allow a local attacker to obtain sensitive information due to improper logging of credentials.
Affected Software
3 affected componentsFixes available
IBM App Connect Enterprise<=13.0.1.0 - 13.0.8.1
IBM App Connect Enterprise<=12.0.1.0 - 12.0.12.28
IBM Integration Bus for z/OS<=10.1.0.0 - 10.1.0.7
Event History
Sep 4, 2026
CVE Published
via IBM·12:00 AM
Data Sourced
via IBM·12:00 AM
DescriptionAffected Software
Frequently Asked Questions
1
What level of access is required to exploit this issue?
An attacker needs local access to the affected system.
2
Which IBM products are identified as affected?
The affected products listed are IBM App Connect Enterprise and IBM Integration Bus for z/OS.