Vulnerabilities > Jsreport

DATE CVE VULNERABILITY TITLE RISK
2023-05-08 CVE-2023-2583 Code Injection vulnerability in Jsreport
Code Injection in GitHub repository jsreport/jsreport prior to 3.11.3.
network
low complexity
jsreport CWE-94
critical
10.0
2020-11-05 CVE-2020-7763 Path Traversal vulnerability in Jsreport Phantom-Html-To-Pdf
This affects the package phantom-html-to-pdf before 0.6.1.
network
low complexity
jsreport CWE-22
7.5
2020-11-05 CVE-2020-7762 Path Traversal vulnerability in Jsreport Jsreport-Chrome-Pdf
This affects the package jsreport-chrome-pdf before 1.10.0.
network
low complexity
jsreport CWE-22
6.5
2020-02-14 CVE-2020-8128 Server-Side Request Forgery (SSRF) vulnerability in Jsreport
An unintended require and server-side request forgery vulnerabilities in jsreport version 2.5.0 and earlier allow attackers to execute arbitrary code.
network
low complexity
jsreport CWE-918
critical
9.8