Webmethods Api Gateway On Prem IBM Webmethods Api Gateway On Prem

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in IBM Webmethods Api Gateway On Prem.

By the Year

In 2026 there have been 1 vulnerability in IBM Webmethods Api Gateway On Prem with an average score of 6.5 out of ten.

Year Vulnerabilities Average Score
2026 1 6.50

It may take a day or so for new Webmethods Api Gateway On Prem vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent IBM Webmethods Api Gateway On Prem Security Vulnerabilities

IBM webMethods API GW 10.11-11.1 arbitrary file read via File:// /createapi
CVE-2026-2606 6.5 - Medium - March 03, 2026

IBM webMethods API Gateway (on-prem) 10.11 through 10.11_Fix3210.15 to 10.15_Fix2711.1 to 11.1_Fix7 IBM webMethods API Management (on-prem) fails to properly validate user-supplied input passed to the url parameter on the /createapi endpoint. An attacker can modify this parameter to use a file:// URI schema instead of the expected https:// schema, enabling unauthorized arbitrary file read access on the underlying server file system.

Directory traversal

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for IBM Webmethods Api Gateway On Prem or by IBM? Click the Watch button to subscribe.

IBM
Vendor

subscribe