Home/Product/tibco jasperreports server
Product

tibco jasperreports server

24 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-10492
<= 9.0.0
A Java deserialisation vulnerability has been discovered in Jaspersoft Library. Improper handling of externally supplied data may
9.8CRITICAL
CVE-2024-3325
<= 8.0.4
Vulnerability in Jaspersoft JasperReport Servers.This issue affects JasperReport Servers: from 8.0.4 through 9.0.0.
7.2HIGH
CVE-2022-41563
<= 8.0.2
The Dashboard component of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports Server, TIBCO JasperReports Serve
9.0CRITICAL
CVE-2022-41562
<= 8.0.2
The HTML escaping component of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports Server, TIBCO JasperReports S
8.4HIGH
CVE-2022-41561
<= 8.0.2
The JNDI Data Sources component of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports Server, TIBCO JasperRepor
9.1CRITICAL
CVE-2022-22773
<= 7.9.2
The REST API component of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports Server - Community Edition, TIBCO
7.7HIGH
CVE-2022-22771
all versions
The Server component of TIBCO Software Inc.'s TIBCO JasperReports Library, TIBCO JasperReports Library for ActiveMatrix BPM, TIBCO
8.8HIGH
CVE-2021-35496
<= 7.2.1
The XMLA Connections component of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports Server, TIBCO JasperReport
7.5HIGH
CVE-2021-35495
<= 7.2.1
The Scheduler Connection component of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports Server, TIBCO JasperRe
9.0CRITICAL
CVE-2021-35494
<= 7.2.1
The Rest API component of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports Server, TIBCO JasperReports Server
5.7MEDIUM
CVE-2020-9410
<= 7.1.1
The report generator component of TIBCO Software Inc.'s TIBCO JasperReports Library, TIBCO JasperReports Library for ActiveMatrix
7.3HIGH
CVE-2020-9409
<= 7.1.1
The administrative UI component of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports Server for AWS Marketplac
9.8CRITICAL
CVE-2019-8986
<= 6.3.4
The SOAP API component vulnerability of TIBCO Software Inc.'s TIBCO JasperReports Server, and TIBCO JasperReports Server for Activ
7.7HIGH
CVE-2018-18816
<= 6.3.4
The repository component of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports Server Community Edition, TIBCO
8.0HIGH
CVE-2018-18815
<= 6.4.3
The REST API component of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports Server Community Edition, TIBCO Ja
10.0CRITICAL
CVE-2018-18809
<= 6.4.3
The default server implementation of TIBCO Software Inc.'s TIBCO JasperReports Library, TIBCO JasperReports Library Community Edit
6.5MEDIUM
CVE-2018-18808
<= 6.3.4
The domain management component of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports Server Community Edition,
8.8HIGH
CVE-2018-5431
<= 6.2.4
The domain designer component of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports Server Community Edition, T
6.3MEDIUM
CVE-2018-5430
<= 6.2.4
The Spring web flows of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports Server Community Edition, TIBCO Jasp
8.8HIGH
CVE-2018-5429
<= 6.2.4
A vulnerability in the report scripting component of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports Server
8.8HIGH
CVE-2017-5533
all versions
A vulnerability in the server content cache of TIBCO JasperReports Server, TIBCO JasperReports Server Community Edition, TIBCO Jas
9.3CRITICAL
CVE-2017-5532
<= 6.2.3
A vulnerability in the report renderer component of TIBCO JasperReports Server, TIBCO JasperReports Server Community Edition, TIBC
5.4MEDIUM
CVE-2017-5529
<= 6.1.1
JasperReports library components contain an information disclosure vulnerability. This vulnerability includes the theoretical disc
4.1MEDIUM
CVE-2017-5528
<= 6.1.1
Multiple JasperReports Server components contain vulnerabilities which may allow authorized users to perform cross-site scripting
8.8HIGH
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin