Known Vulnerabilities for Reports by Stimulsoft
Listed below are 2 of the newest known vulnerabilities associated with "Reports" by "Stimulsoft".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-71289 json | The NASA-AMMOS Asynchronous Network Management System (ANMS) reference implementation's default docker-compose.yml publishes ... | Not Provided | 2026-08-05 | 2026-08-05 |
| CVE-2026-71288 json | Koha's guided report builder (reports/guided_reports.pl) reads the `order_by` CGI parameter and, for each value, a dynamicall... | Not Provided | 2026-08-05 | 2026-08-05 |
| CVE-2026-70373 json | Koha's reports/issues_stats.pl (the circulation statistics report) builds its calculation query in sub calculate by concatena... | Not Provided | 2026-08-04 | 2026-08-05 |
| CVE-2026-70372 json | Koha's reports/bor_issues_top.pl builds dynamic SQL in sub calculate by concatenating several user-controlled request paramet... | Not Provided | 2026-08-04 | 2026-08-05 |
| CVE-2026-70371 json | Koha's reports/issues_avg_stats.pl builds dynamic SQL in sub calculate by concatenating several user-controlled request param... | Not Provided | 2026-08-04 | 2026-08-05 |
| CVE-2026-70370 json | Koha's reports/catalogue_stats.pl builds dynamic SQL in sub calculate by interpolating the user-controlled Line and Column re... | Not Provided | 2026-08-04 | 2026-08-05 |
| CVE-2026-70369 json | Koha's reports/acquisitions_stats.pl builds its per-cell statistics query in sub calculate by interpolating the user-controll... | Not Provided | 2026-08-04 | 2026-08-05 |
| CVE-2026-69257 json | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, Flowise's HTTP secur... | Not Provided | 2026-08-04 | 2026-08-04 |
| CVE-2026-69192 json | ip-address is a library for parsing and manipulating IPv4 and IPv6 addresses in JavaScript. Prior to 10.3.1, Address4 accepts... | Not Provided | 2026-08-03 | 2026-08-04 |
| CVE-2026-68746 json | Not Failing Securely ('Failing Open') vulnerability in livebook-dev livebook allows an unauthenticated network client to obta... | Not Provided | 2026-08-05 | 2026-08-06 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Stimulsoft | Reports | 2013.1.1600.0 |