Critical severity9.8NVD Advisory· Published Dec 26, 2025· Updated Jun 17, 2026
CVE-2025-13915
CVE-2025-13915
Description
IBM API Connect 10.0.8.0 through 10.0.8.5, and 10.0.11.0 could allow a remote attacker to bypass authentication mechanisms and gain unauthorized access to the application.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:ibm:api_connect:*:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:ibm:api_connect:*:*:*:*:*:*:*:*range: >=10.0.8.0,<=10.0.8.5
- cpe:2.3:a:ibm:api_connect:10.0.11.0:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:api_connect:10.0.8.0:*:*:*:*:*:*:*range: 10.0.8.0
- (no CPE)range: 10.0.8.0 - 10.0.8.5, 10.0.11.0
Patches
Vulnerability mechanics
References
1- www.ibm.com/support/pages/node/7255149nvdVendor Advisory
News mentions
0No linked articles in our index yet.