Vulnerability index

Browse CVEs

7 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2026-65688 Bold Reports Standalone Report Designer before 14.1.12 contains a missing filepath validation vulnerability in its font processing feature that allow… Standalone Report Designer 14.1.12+ Fix from $2,3002026-07-23 CRITICAL 9.8 CVE-2026-65689 Bold Reports Standalone Report Designer before 14.1.12 contains a missing filepath validation vulnerability in its database download feature that all… Standalone Report Designer 14.1.12+ Fix from $2,3002026-07-23 HIGH 8.8 CVE-2026-65690 Bold Reports Standalone Report Designer before 14.1.12 contains a missing filepath validation vulnerability in its file upload functionality that all… Standalone Report Designer 14.1.12+ Fix from $1,9502026-07-23 CRITICAL 9.8 CVE-2026-65687 Bold Reports Standalone Report Designer before 14.1.12 contains a missing filepath validation vulnerability in its SVG processing feature that allows… Standalone Report Designer 14.1.12+ Fix from $2,3002026-07-23 MEDIUM 5.4 CVE-2025-63260 SyncFusion 30.1.37 is vulnerable to Cross Site Scripting (XSS) via the Document-Editor reply to comment field and Chat-UI Chat message. Syncfusion No fix yet Fix from $1,6002026-03-20 CRITICAL 9.8 CVE-2023-26564 The Syncfusion EJ2 ASPCore File Provider 3ac357f is vulnerable to Models/PhysicalFileProvider.cs directory traversal. As a result, an unauthenticated… Ej2 Aspcore File Provider No fix yet Fix from $2,3002023-07-12 CRITICAL 9.8 CVE-2023-26563 The Syncfusion EJ2 Node File Provider 0102271 is vulnerable to filesystem-server.js directory traversal. As a result, an unauthenticated attacker can… Nodejs File System Provider No fix yet Fix from $2,3002023-07-12