CVEs (2)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Sparxsystems 1Enterprise Architect Aug 21, 2026 Apr 16, 2026 5.7 MEDIUM· v4 6.0 MEDIUM· v3 N/A· v2 Insufficiently Protected Credentials in Sparx Systems Pty Ltd. Sparx Enterprise Architect. Client does not verify the receiver of OAuth2 credentials during OpenID authentication |
1Sparxsystems 1Enterprise Architect Jun 17, 2026 Jan 31, 2024 N/A· v4 9.8 CRITICAL· v3 N/A· v2 SQL injection vulnerability in Enterprise Architect 16.0.1605 32-bit allows attackers to run arbitrary SQL commands via the Find parameter in the Select Classifier dialog box.. |