CVE-2026-19649

IBM App Connect Enterprise 13.0.1.0 through 13.0.8.1, and 12.0.1.0 through 12.0.12.28 and IBM Integration Bus for z/OS 10.1.0.0 through 10.1.0.7 could allow a local attacker to obtain sensitive information due to improper logging of database credentials.
References
Link Resource
https://www.ibm.com/support/pages/node/7286372 Patch Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:app_connect_enterprise:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:app_connect_enterprise:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:integration_bus_for_z\/os:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-09-04 16:17

Updated : 2026-09-09 14:55


NVD link : CVE-2026-19649

Mitre link : CVE-2026-19649

CVE.ORG link : CVE-2026-19649


JSON object : View

Products Affected

ibm

  • app_connect_enterprise
  • integration_bus_for_z\/os
CWE
CWE-532

Insertion of Sensitive Information into Log File