PT-2026-85746 · Ibm · Ibm App Connect Enterprise+1

CVE-2026-16180

·

Published

2026-09-04

·

Updated

2026-09-04

CVSS v3.1

5.7

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:H
IBM App Connect Enterprise 13.0.1.0 through 13.0.8.1, and 12.0.1.0 through 12.0.12.28 and IBM Integration Bus for z/OS 10.1.0.0 through 10.1.0.7 Toolkit could allow an authenticated user to cause a denial-of-service condition due to improper validation of XML entities.

Fix

XML Entity Expansion

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-16180

Affected Products

Ibm App Connect Enterprise
Ibm Integration Bus For Z/Os