← Back

Jsreport

jsreport

Vendor: Jsreport • 2 CVEs

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Jsreport
1Jsreport
Nov 21, 2024
May 8, 2023
N/A· v4
10.0 CRITICAL· v3
N/A· v2
Code Injection in GitHub repository jsreport/jsreport prior to 3.11.3.
1Jsreport
1Jsreport
Nov 21, 2024
Feb 14, 2020
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
An unintended require and server-side request forgery vulnerabilities in jsreport version 2.5.0 and earlier allow attackers to execute arbitrary code.