dCERT issued two advisories covering multiple vulnerabilities in IBM App Connect Enterprise, indicating ongoing security issues affecting the enterprise integration platform. The advisories, 2026-0874 and 2026-0987, both identify IBM App Connect Enterprise as the impacted product, though no public synopsis was provided in the referenced notices.
The repeated publication of advisories for the same IBM product suggests organizations using App Connect Enterprise should review the associated vendor and dCERT guidance, identify affected versions, and prioritize patching or other mitigations. Security teams should also assess exposure in environments where the platform handles critical application and data flows, as vulnerabilities in integration middleware can create broad operational and security risk.

See real exploitation activity before you spend the cycle.
10 events from the most recent confirmed update back to the earliest known activity.
dCERT published advisory 2026-1422 covering multiple vulnerabilities affecting IBM App Connect Enterprise (Axios). This is a new vulnerability disclosure/update distinct from the earlier dCERT advisories already in the timeline.
dCERT published advisory 2026-1402 for IBM App Connect Enterprise describing a vulnerability that could allow code execution. This is a new vulnerability disclosure/update distinct from the earlier dCERT advisories already in the timeline.
dCERT published advisory 2026-1407 covering multiple vulnerabilities affecting IBM App Connect Enterprise Certified Container. This is a new vulnerability disclosure/update distinct from the earlier dCERT advisories already in the timeline.
dCERT published advisory 2026-1380 for IBM App Connect Enterprise describing a vulnerability that could allow information disclosure. This is a new disclosure/update distinct from the earlier dCERT advisories already in the timeline.
dCERT published advisory 2026-1383 covering multiple vulnerabilities affecting IBM App Connect Enterprise Certified Container. This is a new vulnerability disclosure/update distinct from the earlier dCERT advisories already in the timeline.
dCERT published advisory 2026-1200 covering multiple vulnerabilities affecting IBM App Connect Enterprise. This is a new vulnerability disclosure/update distinct from the earlier dCERT advisories already in the timeline.
dCERT published advisory 2026-1135 covering multiple vulnerabilities affecting IBM App Connect Enterprise. This represents a new vulnerability disclosure or update separate from the earlier dCERT advisories already in the timeline.
dCERT published advisory 2026-1040 for IBM App Connect Enterprise, describing a vulnerability that could allow denial of service. This is a new disclosure/update distinct from the earlier dCERT advisories already in the timeline.
dCERT published a second advisory, 2026-0987, for multiple vulnerabilities in IBM App Connect Enterprise. This represents a new disclosure or update distinct from the earlier advisory.
dCERT published advisory 2026-0874 covering multiple vulnerabilities affecting IBM App Connect Enterprise. The reference indicates this was a vulnerability disclosure event.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See real exploitation activity behind this advisory so you can triage it against everything else in the queue.
10 references tracked. Mallory keeps watching after this page renders.
dcert.de
Open sourcedcert.de
Open sourcedcert.de
Open sourcedcert.de
Open sourcedcert.de
Open sourcedcert.de
Open sourcedcert.de
Open sourcedcert.de
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.