tibco

229 tracked vulnerabilities.

CVE-2026-3912 HIGH
TIBCO ActiveMatrix BusinessWorks Injection Vulnerability
Mar 24, 2026
EPSS 0.00
CVE-2026-3207 CRITICAL
TIBCO BPM Enterprise Remote Code Execution (RCE) Vulnerability
Mar 17, 2026
CVSS 9.8
EPSS 0.00
CVE-2025-3115 CRITICAL
TIBCO Spotfire Enterprise Runtime for R < 6.1.5 - Code Injection and Arbitrary File Upload
Apr 09, 2025
CVSS 9.8
EPSS 0.00
CVE-2024-4576 MEDIUM
TIBCO EBX < 5.9.25 - Path Traversal
Jun 13, 2024
CVSS 5.3
EPSS 0.01
CVE-2024-3182 MEDIUM
TIBCO Hawk <6.2.4 - Info Disclosure
May 15, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-3323 HIGH
TIBCO JasperReports Server <8.2.0 - XSS
Apr 17, 2024
CVSS 8.3
EPSS 0.00
CVE-2023-26222 HIGH
TIBCO EBX < 5.0.0 - Stored Cross-Site Scripting
Nov 14, 2023
CVSS 8.7
EPSS 0.00
CVE-2023-26221 MEDIUM
TIBCO Spotfire Analyst 12.3.0, 12.4.0, 12.5.0 - Insufficiently Protected Credentials via Crafted Analyst Files
Nov 08, 2023
CVSS 5.0
EPSS 0.00
CVE-2023-26219 HIGH
TIBCO Hawk <6.2.2 - Info Disclosure
Oct 25, 2023
CVSS 7.4
EPSS 0.00
CVE-2023-26220 MEDIUM
TIBCO Spotfire <11.4.7,-11.7.0 - XSS
Oct 10, 2023
CVSS 5.4
EPSS 0.00
CVE-2023-26218 HIGH
TIBCO Nimbus < 10.6.1 - Reflected Cross-Site Scripting in Web Client
Sep 29, 2023
CVSS 8.0
EPSS 0.00
CVE-2023-26217 HIGH
TIBCO EBX Add-ons <4.5.17, <5.6.2, <=6.1.0 - SQL Injection
Jul 19, 2023
CVSS 8.8
EPSS 0.00
CVE-2023-26216 CRITICAL
TIBCO EBX Add-ons <4.5.16 - File Upload
May 25, 2023
CVSS 9.1
EPSS 0.00
CVE-2023-26215 HIGH
TIBCO EBX Add-ons <4.5.16 - Info Disclosure
May 25, 2023
CVSS 7.7
EPSS 0.00
CVE-2023-29268 CRITICAL
TIBCO Spotfire Statistics Services <12.0 - File Upload
Apr 26, 2023
CVSS 9.8
EPSS 0.01
CVE-2023-26214 HIGH
TIBCO BusinessConnect < 7.3.1 - Reflected Cross-Site Scripting
Feb 22, 2023
CVSS 7.3
EPSS 0.01
CVE-2022-41567 HIGH
TIBCO BusinessConnect < 7.3.1 - Cross-Site Scripting in UI Component
Feb 22, 2023
CVSS 7.3
EPSS 0.01
CVE-2022-41566 HIGH
TIBCO EBX Add-ons < 5.6.1 - Stored Cross-Site Scripting
Feb 22, 2023
CVSS 8.7
EPSS 0.01
CVE-2022-41565 HIGH
TIBCO EBX < 5.9.22 and TIBCO Product and Service Catalog powered by TIBCO EBX < 1.2.1 - Stored Cross-Site Scripting
Feb 22, 2023
CVSS 8.7
EPSS 0.01
CVE-2022-41564 MEDIUM
TIBCO Hawk & TIBCO Operational Intelligence Hawk RedTail <6.2.1, <7...
Feb 14, 2023
CVSS 6.8
EPSS 0.00
CVE-2022-41563 CRITICAL
TIBCO JasperReports Server < 8.0.2 and 8.1.0 - Stored Cross-Site Scripting in Dashboard Component
Dec 13, 2022
CVSS 9.0
EPSS 0.00
CVE-2022-41562 HIGH
TIBCO JasperReports Server - Info Disclosure
Dec 13, 2022
CVSS 8.4
EPSS 0.01
CVE-2022-41561 CRITICAL
TIBCO JasperReports Server - Privilege Escalation
Dec 13, 2022
CVSS 9.1
EPSS 0.04
CVE-2022-41560 MEDIUM
TIBCO Nimbus 10.5.0 - Denial of Service via Statement Set Upload
Dec 06, 2022
CVSS 6.5
EPSS 0.00
CVE-2022-41559 CRITICAL
TIBCO Nimbus <10.5.0 - Open Redirect
Dec 06, 2022
CVSS 9.3
EPSS 0.01