Search CVE reports


Toggle filters

1 – 10 of 119 results


CVE-2025-10492

Medium priority
Needs evaluation

A Java deserialisation vulnerability has been discovered in Jaspersoft Library. Improper handling of externally supplied data may allow attackers to execute arbitrary code remotely on systems that use the affected library

1 affected package

jasperreports

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasperreports Not in release Not in release Needs evaluation
Show less packages

CVE-2025-8837

Low priority
Needs evaluation

A vulnerability was identified in JasPer up to 4.2.5. This affects the function jpc_dec_dump of the file src/libjasper/jpc/jpc_dec.c of the component JPEG2000 File Handler. The manipulation leads to use after free. An attack has...

1 affected package

jasper

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasper Not in release Not in release
Show less packages

CVE-2025-8836

Low priority
Needs evaluation

A vulnerability was determined in JasPer up to 4.2.5. Affected by this issue is the function jpc_floorlog2 of the file src/libjasper/jpc/jpc_enc.c of the component JPEG2000 Encoder. The manipulation leads to reachable assertion....

1 affected package

jasper

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasper Not in release Not in release
Show less packages

CVE-2025-8835

Low priority
Needs evaluation

A vulnerability was found in JasPer up to 4.2.5. Affected by this vulnerability is the function jas_image_chclrspc of the file src/libjasper/base/jas_image.c of the component Image Color Space Conversion Handler. The manipulation...

1 affected package

jasper

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasper Not in release Not in release Not in release
Show less packages

CVE-2024-3325

Low priority
Needs evaluation

Vulnerability in Jaspersoft JasperReport Servers.This issue affects JasperReport Servers: from 8.0.4 through 9.0.0.

1 affected package

jasperreports

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasperreports Not in release Not in release Not in release Not in release Needs evaluation
Show less packages

CVE-2024-31744

Medium priority
Needs evaluation

In Jasper 4.2.2, the jpc_streamlist_remove function in src/libjasper/jpc/jpc_dec.c:2407 has an assertion failure vulnerability, allowing attackers to cause a denial of service attack through a specific image file.

1 affected package

jasper

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasper Not in release Not in release Not in release
Show less packages

CVE-2023-51257

Medium priority
Needs evaluation

An invalid memory write issue in Jasper-Software Jasper v.4.1.1 and before allows a local attacker to execute arbitrary code.

3 affected packages

jasper, netpbm-free, opencpn

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasper Not in release Not in release Not in release Ignored
netpbm-free Needs evaluation Needs evaluation Needs evaluation Needs evaluation
opencpn Needs evaluation Needs evaluation Needs evaluation Ignored
Show less packages

CVE-2022-41563

Medium priority
Needs evaluation

The Dashboard component of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports Server, TIBCO JasperReports Server - Developer Edition, TIBCO JasperReports Server for AWS Marketplace, TIBCO JasperReports Server...

1 affected package

jasperreports

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasperreports Not in release Not in release Needs evaluation
Show less packages

CVE-2022-41562

Medium priority
Needs evaluation

The HTML escaping component of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports Server, TIBCO JasperReports Server - Community Edition, TIBCO JasperReports Server - Developer Edition, TIBCO JasperReports...

1 affected package

jasperreports

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasperreports Not in release Not in release Needs evaluation
Show less packages

CVE-2022-41561

Medium priority
Needs evaluation

The JNDI Data Sources component of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports Server, TIBCO JasperReports Server - Community Edition, TIBCO JasperReports Server - Developer Edition, TIBCO JasperReports...

1 affected package

jasperreports

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
jasperreports Not in release Not in release Needs evaluation
Show less packages