logo

Critical IBM API Connect Vulnerability Let Attackers Bypass Logins

ID: f7144104-bf48-53f1-b76a-4cef58635227

STIX ID: report--f7144104-bf48-53f1-b76a-4cef58635227

Feed Name: cybersecurityNews.com

Threat Score
80/100

Date Published: 2025-12-31

Date Updated: 2026-04-21

Author: Abinaya

...
...

A critical authentication-bypass vulnerability (CVE-2025-13915) was discovered in IBM API Connect (affecting specific 10.0.8 and 10.0.11 builds) with a CVSS base score of 9.8. The advisory urges immediate application of supplied iFix patches and, as a temporary mitigation for unpatched systems, disabling self-service sign-up on the Developer Portal to reduce exposure.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.