tibco
229 tracked vulnerabilities.
CVE-2026-3912
HIGH
TIBCO ActiveMatrix BusinessWorks Injection Vulnerability
Mar 24, 2026
EPSS 0.00
CVE-2026-3207
CRITICAL
TIBCO BPM Enterprise Remote Code Execution (RCE) Vulnerability
Mar 17, 2026
CVSS 9.8
EPSS 0.00
CVE-2025-3115
CRITICAL
TIBCO Spotfire Enterprise Runtime for R < 6.1.5 - Code Injection and Arbitrary File Upload
Apr 09, 2025
CVSS 9.8
EPSS 0.00
CVE-2024-4576
MEDIUM
TIBCO EBX < 5.9.25 - Path Traversal
Jun 13, 2024
CVSS 5.3
EPSS 0.01
CVE-2024-3182
MEDIUM
TIBCO Hawk <6.2.4 - Info Disclosure
May 15, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-3323
HIGH
TIBCO JasperReports Server <8.2.0 - XSS
Apr 17, 2024
CVSS 8.3
EPSS 0.00
CVE-2023-26222
HIGH
TIBCO EBX < 5.0.0 - Stored Cross-Site Scripting
Nov 14, 2023
CVSS 8.7
EPSS 0.00
CVE-2023-26221
MEDIUM
TIBCO Spotfire Analyst 12.3.0, 12.4.0, 12.5.0 - Insufficiently Protected Credentials via Crafted Analyst Files
Nov 08, 2023
CVSS 5.0
EPSS 0.00
CVE-2023-26219
HIGH
TIBCO Hawk <6.2.2 - Info Disclosure
Oct 25, 2023
CVSS 7.4
EPSS 0.00
CVE-2023-26220
MEDIUM
TIBCO Spotfire <11.4.7,-11.7.0 - XSS
Oct 10, 2023
CVSS 5.4
EPSS 0.00
CVE-2023-26218
HIGH
TIBCO Nimbus < 10.6.1 - Reflected Cross-Site Scripting in Web Client
Sep 29, 2023
CVSS 8.0
EPSS 0.00
CVE-2023-26217
HIGH
TIBCO EBX Add-ons <4.5.17, <5.6.2, <=6.1.0 - SQL Injection
Jul 19, 2023
CVSS 8.8
EPSS 0.00
CVE-2023-26216
CRITICAL
TIBCO EBX Add-ons <4.5.16 - File Upload
May 25, 2023
CVSS 9.1
EPSS 0.00
CVE-2023-26215
HIGH
TIBCO EBX Add-ons <4.5.16 - Info Disclosure
May 25, 2023
CVSS 7.7
EPSS 0.00
CVE-2023-29268
CRITICAL
TIBCO Spotfire Statistics Services <12.0 - File Upload
Apr 26, 2023
CVSS 9.8
EPSS 0.01
CVE-2023-26214
HIGH
TIBCO BusinessConnect < 7.3.1 - Reflected Cross-Site Scripting
Feb 22, 2023
CVSS 7.3
EPSS 0.01
CVE-2022-41567
HIGH
TIBCO BusinessConnect < 7.3.1 - Cross-Site Scripting in UI Component
Feb 22, 2023
CVSS 7.3
EPSS 0.01
CVE-2022-41566
HIGH
TIBCO EBX Add-ons < 5.6.1 - Stored Cross-Site Scripting
Feb 22, 2023
CVSS 8.7
EPSS 0.01
CVE-2022-41565
HIGH
TIBCO EBX < 5.9.22 and TIBCO Product and Service Catalog powered by TIBCO EBX < 1.2.1 - Stored Cross-Site Scripting
Feb 22, 2023
CVSS 8.7
EPSS 0.01
CVE-2022-41564
MEDIUM
TIBCO Hawk & TIBCO Operational Intelligence Hawk RedTail <6.2.1, <7...
Feb 14, 2023
CVSS 6.8
EPSS 0.00
CVE-2022-41563
CRITICAL
TIBCO JasperReports Server < 8.0.2 and 8.1.0 - Stored Cross-Site Scripting in Dashboard Component
Dec 13, 2022
CVSS 9.0
EPSS 0.00
CVE-2022-41562
HIGH
TIBCO JasperReports Server - Info Disclosure
Dec 13, 2022
CVSS 8.4
EPSS 0.01
CVE-2022-41561
CRITICAL
TIBCO JasperReports Server - Privilege Escalation
Dec 13, 2022
CVSS 9.1
EPSS 0.04
CVE-2022-41560
MEDIUM
TIBCO Nimbus 10.5.0 - Denial of Service via Statement Set Upload
Dec 06, 2022
CVSS 6.5
EPSS 0.00
CVE-2022-41559
CRITICAL
TIBCO Nimbus <10.5.0 - Open Redirect
Dec 06, 2022
CVSS 9.3
EPSS 0.01
Products
spotfire_server 28
jasperreports_server 22
spotfire_analytics_platform_for_aws 20
rendezvous 16
spotfire_analyst 12
enterprise_message_service 11
jaspersoft 10
jaspersoft_reporting_and_analytics 10
managed_file_transfer_command_center 10
managed_file_transfer_internet_server 10
spotfire_desktop 10
ebx 9
ebx_add-ons 9
ftl 9
runtime_agent 9
activematrix_bpm 8
activematrix_service_bus 8
activematrix_service_grid 8
spotfire_deployment_kit 8
silver_fabric_enabler 7
spotfire_analytics_platform 7
spotfire_statistics_services 7
administrator 6
hawk 6
spotfire_desktop_language_packs 6
activematrix_businessworks_service_engine 5
eftl 5
iprocess_engine 5
jasperreports_library 5
rtworks 5
Quick Filters