Vulnerability index

Browse CVEs

7 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Standalone Report Designer CRITICAL 9.8
CVE-2026-65688

Bold Reports Standalone Report Designer before 14.1.12 contains a missing filepath validation vulnerability in its font processing feature that allow…

Fix: 14.1.12+
Fix from $2,300 2026-07-23
Standalone Report Designer CRITICAL 9.8
CVE-2026-65689

Bold Reports Standalone Report Designer before 14.1.12 contains a missing filepath validation vulnerability in its database download feature that all…

Fix: 14.1.12+
Fix from $2,300 2026-07-23
Standalone Report Designer HIGH 8.8
CVE-2026-65690

Bold Reports Standalone Report Designer before 14.1.12 contains a missing filepath validation vulnerability in its file upload functionality that all…

Fix: 14.1.12+
Fix from $1,950 2026-07-23
Standalone Report Designer CRITICAL 9.8
CVE-2026-65687

Bold Reports Standalone Report Designer before 14.1.12 contains a missing filepath validation vulnerability in its SVG processing feature that allows…

Fix: 14.1.12+
Fix from $2,300 2026-07-23
Syncfusion MEDIUM 5.4
CVE-2025-63260

SyncFusion 30.1.37 is vulnerable to Cross Site Scripting (XSS) via the Document-Editor reply to comment field and Chat-UI Chat message.

No fix yet
Fix from $1,600 2026-03-20
Ej2 Aspcore File Provider CRITICAL 9.8
CVE-2023-26564

The Syncfusion EJ2 ASPCore File Provider 3ac357f is vulnerable to Models/PhysicalFileProvider.cs directory traversal. As a result, an unauthenticated…

No fix yet
Fix from $2,300 2023-07-12
Nodejs File System Provider CRITICAL 9.8
CVE-2023-26563

The Syncfusion EJ2 Node File Provider 0102271 is vulnerable to filesystem-server.js directory traversal. As a result, an unauthenticated attacker can…

No fix yet
Fix from $2,300 2023-07-12