Vulnerabilities (CVE)

Filtered by vendor Bladex Subscribe
Filtered by product Springblade
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-47458 1 Bladex 1 Springblade 2024-01-08 N/A 9.8 CRITICAL
An issue in SpringBlade v.3.7.0 and before allows a remote attacker to escalate privileges via the lack of permissions control framework.
CVE-2022-27360 1 Bladex 1 Springblade 2022-05-13 7.5 HIGH 9.8 CRITICAL
SpringBlade v3.2.0 and below was discovered to contain a SQL injection vulnerability via the component customSqlSegment.