Vulnerabilities > Jsreport > Jsreport > 0.2.10

DATE CVE VULNERABILITY TITLE RISK
2023-05-08 CVE-2023-2583 Code Injection vulnerability in Jsreport
Code Injection in GitHub repository jsreport/jsreport prior to 3.11.3.
network
low complexity
jsreport CWE-94
critical
10.0
2020-02-14 CVE-2020-8128 Server-Side Request Forgery (SSRF) vulnerability in Jsreport
An unintended require and server-side request forgery vulnerabilities in jsreport version 2.5.0 and earlier allow attackers to execute arbitrary code.
network
low complexity
jsreport CWE-918
7.5