Vendor
Cloud
Products
7
CVEs
4
Across products
8
Status
Private
Products
7- 2 CVEs
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
Recent CVEs
4| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2025-10492 | Cri | 0.57 | 9.8 | 0.01 | Sep 16, 2025 | A Java deserialisation vulnerability has been discovered in Jaspersoft Library. Improper handling of externally supplied data may allow attackers to execute arbitrary code remotely on systems that use the affected library | ||
| CVE-2024-3325 | Hig | 0.47 | 7.2 | 0.01 | Jul 10, 2024 | Vulnerability in Jaspersoft JasperReport Servers.This issue affects JasperReport Servers: from 8.0.4 through 9.0.0. | ||
| CVE-2023-5914 | Med | 0.41 | 5.4 | 0.73 | Jan 17, 2024 | Cross-site scripting (XSS) | ||
| CVE-2024-30801 | Med | 0.36 | 5.5 | 0.01 | May 14, 2024 | SQL Injection vulnerability in Cloud based customer service management platform v.1.0.0 allows a local attacker to execute arbitrary code via a crafted payload to Login.asp component. |
- risk 0.57cvss 9.8epss 0.01
A Java deserialisation vulnerability has been discovered in Jaspersoft Library. Improper handling of externally supplied data may allow attackers to execute arbitrary code remotely on systems that use the affected library
- risk 0.47cvss 7.2epss 0.01
Vulnerability in Jaspersoft JasperReport Servers.This issue affects JasperReport Servers: from 8.0.4 through 9.0.0.
- risk 0.41cvss 5.4epss 0.73
Cross-site scripting (XSS)
- risk 0.36cvss 5.5epss 0.01
SQL Injection vulnerability in Cloud based customer service management platform v.1.0.0 allows a local attacker to execute arbitrary code via a crafted payload to Login.asp component.