High Severity

Security Bulletin: IBM App Connect Enterprise Certified Container may be vulnerable to directory traversal due to CVE-2021-32804

Share this post:

IBM App Connect Enterprise Certified Container may be vulnerable to directory traversal due to CVE-2021-32804. This only affects Node.js runtime processes.

CVE(s): CVE-2021-32804

Affected product(s) and affected version(s):

Affected Product(s) Version(s)
App Connect Enterprise Certified Container 1.0 with Operator
App Connect Enterprise Certified Container 1.1 with Operator
App Connect Enterprise Certified Container 1.2 with Operator
App Connect Enterprise Certified Container 1.3 with Operator
App Connect Enterprise Certified Container 1.4 with Operator
App Connect Enterprise Certified Container 1.5 with Operator
App Connect Enterprise Certified Container 2.0 with Operator

Refer to the following reference URLs for remediation and additional vulnerability details:  
Source Bulletin: https://www.ibm.com/support/pages/node/6507035
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/206719

More stories

Security Bulletin: Apache Tomcat Vulnerability Affects Watson Speech Services

Dec 7, 2021 7:01 pm EST | High Severity

An Apache Tomcat Vulnerability affecting Watson Speech Services has been fixed in the latest version of IBM Watson Speech Services Cartridge for IBM Cloud Pak for Data 4.0.3 ...read more


Security Bulletin: A CVE-2021-37714 vulnerability in jsoup affects IBM Process Designer in IBM Business Automation Workflow and IBM Business Process Manager

Dec 7, 2021 7:01 pm EST | High Severity

A vulnerabilitiy exists in jsoup used by the desktop version of IBM Process Designer. IBM Process Designer has addressed the applicable CVE. ...read more


Security Bulletin: glibc Vulnerability affects Watson Speech Services

Dec 7, 2021 7:00 pm EST | High Severity

A Redhat glibc Vulnerability affecting Watson Speech Services has been fixed in the latest version of IBM Watson Speech Services Cartridge for IBM Cloud Pak for Data 4.0.3 ...read more