Description
An XML external entity (XXE) vulnerability in the /designer/loadReport endpoint of SpringBlade v4.8.0 allows authenticated attackers to execute arbitrary code via injecting a crafted payload.
References (2)
Core 2
Scores
EPSS
0.0002
EPSS Percentile
6.3%
Details
Status
published
Published
Apr 30, 2026
Tracked Since
Apr 30, 2026