Vulnerabilities (CVE)

Filtered by vendor Jsreport Subscribe
Total 4 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-2583 1 Jsreport 1 Jsreport 2023-12-10 N/A 10.0 CRITICAL
Code Injection in GitHub repository jsreport/jsreport prior to 3.11.3.
CVE-2020-7763 1 Jsreport 1 Phantom-html-to-pdf 2023-12-10 5.0 MEDIUM 7.5 HIGH
This affects the package phantom-html-to-pdf before 0.6.1.
CVE-2020-7762 1 Jsreport 1 Jsreport-chrome-pdf 2023-12-10 4.0 MEDIUM 6.5 MEDIUM
This affects the package jsreport-chrome-pdf before 1.10.0.
CVE-2020-8128 1 Jsreport 1 Jsreport 2023-12-10 7.5 HIGH 9.8 CRITICAL
An unintended require and server-side request forgery vulnerabilities in jsreport version 2.5.0 and earlier allow attackers to execute arbitrary code.