CVE-2026-9074
EUVD-2026-4230708.07.2026, 16:16
IBM API Connect 10.0.8.0 through 10.0.8.9 and 12.1.0.0 through 12.1.0.3 contains an unauthenticated SQL injection vulnerability in the password reset functionality.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| ibm | api_connect | 10.0.8.0 ≤ 𝑥 < 10.0.8.10 |
| ibm | api_connect | 12.1.0.0 ≤ 𝑥 < 12.1.1.0 |
𝑥
= Vulnerable software versions