CVE-2025-13491General

LOWCVSS 5.1 · MEDIUM

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

IBM App Connect Enterprise Certified Container CD: 11.2.0 through 11.6.0, 12.1.0 through 12.19.0 and 12.0 LTS: 12.0.0 through 12.0.19 could allow an attacker to access sensitive files or modify configurations due to an untrusted search path.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-426

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 2 mentions across 1 observed day

What's happening

  • Technical details provided in 1 signal
  • General: 2 classified signals
  • 2 total mentions across 1 day

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-02-05: 2Technical Details · 2026-02-05: 102-05
Signal classification1 categories
General
2100.0%
Referenced assets2 URLs
Full discourse2 posts
  • CVE@CVEnew
    General

    CVE-2025-13491 IBM App Connect Enterprise Certified Container up to 12.19.0 (Continuous Delivery) and 12.0 LTS (Long Term Support) could allow an attacker to access sensitive files … https://www.cve.org/CVERecord?id=CVE-2025-13491

    Post summary

    The text briefly announces CVE-2025-13491, noting that it enables file access on specific IBM App Connect Enterprise container versions and links to the official CVE record.

    00020239
    56.5K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    General

    CVE-2025-13491 IBM App Connect Enterprise Container Vulnerability https://vulmon.com/vulnerabilitydetails?qid=CVE-2025-13491

    Post summary

    The text references CVE‑2025‑13491 as an IBM App Connect Enterprise Container vulnerability but provides no technical details, PoC, or exploitation information.

    0000047
    4.0K followersView on X

Explore more