VYPR

Jasperreports Server Community Project

by Jasperforge

CVEs (1)

  • CVE-2011-1911Sep 20, 2011
    risk 0.00cvss epss 0.01

    JasperServer in JasperReports Server Community Project 3.7.0 and 3.7.1 uses a predictable _flowExecutionKey parameter, which makes it easier for remote attackers to conduct cross-site request forgery (CSRF) attacks via a brute-force approach.