Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

TIBCO Software Inc. — Vulnerabilities & Security Advisories 159

Browse all 159 CVE security advisories affecting TIBCO Software Inc.. AI-powered Chinese analysis, POCs, and references for each vulnerability.

TIBCO Software Inc. provides enterprise integration and analytics platforms, primarily facilitating data connectivity and business process automation for large organizations. Historically, its software portfolio has exhibited a significant volume of vulnerabilities, with 159 Common Vulnerabilities and Exposures (CVEs) currently recorded. The most prevalent flaw classes include remote code execution (RCE), cross-site scripting (XSS), and privilege escalation issues, often stemming from improper input validation and insufficient access controls within its integration middleware and analytics tools. While TIBCO has not been the subject of a singular, widely publicized catastrophic breach comparable to major data leaks, the sheer number of disclosed vulnerabilities indicates persistent challenges in secure coding practices across its diverse product suite. These findings underscore the necessity for rigorous patch management and continuous security monitoring for enterprises relying on TIBCO’s infrastructure to mitigate potential exploitation risks.

CVE IDTitleCVSSSeverityPublished
CVE-2024-1137 TIBCO ActiveSpaces Information Leak Vulnerability — TIBCO ActiveSpaces - Enterprise Edition 4.3 Medium2024-03-12
CVE-2024-1138 TIBCO FTL Privilege Escalation — TIBCO FTL - Enterprise Edition 8.8 High2024-03-12
CVE-2023-26222 TIBCO EBX Cross-site Scripting (XXS) Vulnerability — TIBCO EBX 8.7 High2023-11-14
CVE-2023-26221 TIBCO Spotfire Insufficiently Protected Credential vulnerability — Spotfire AnalystCWE-522 5.0 Medium2023-11-08
CVE-2023-26219 TIBCO Operational Intelligence Hawk RedTail Credential Exposure Vulnerability — TIBCO Hawk 7.4 High2023-10-24
CVE-2023-26220 TIBCO Spotfire Stored Cross-site Scripting (XSS) vulnerability — Spotfire AnalystCWE-79 5.4 Medium2023-10-10
CVE-2023-26218 TIBCO Nimbus Reflected Cross-site Scripting (XSS) vulnerabilities — TIBCO NimbusCWE-79 8.0 High2023-09-29
CVE-2023-26217 TIBCO EBX Add-ons SQL Injection Vulnerability — TIBCO EBX Add-onsCWE-89 8.8 High2023-07-19
CVE-2023-26215 TIBCO EBX® Add-ons Path Traversal — TIBCO EBX Add-ons 7.7 High2023-05-25
CVE-2023-26216 TIBCO EBX Add-ons Arbitrary File Write — TIBCO EBX Add-ons 9.1 Critical2023-05-25
CVE-2023-29268 TIBCO Spotfire Statistics Services Unrestricted File Upload Vulnerability — TIBCO Spotfire Statistics Services 9.8 Critical2023-04-26
CVE-2023-26214 TIBCO BusinessConnect Reflected XSS Vulnerability — TIBCO BusinessConnect 7.3 High2023-02-22
CVE-2022-41567 TIBCO BusinessConnect Stored XSS Vulnerability — TIBCO BusinessConnect 7.3 High2023-02-22
CVE-2022-41566 TIBCO EBX Add-ons Cross Site Scripting (XSS) Vulnerability — TIBCO EBX Add-ons 8.7 High2023-02-22
CVE-2022-41565 TIBCO EBX Cross Site Scripting (XSS) Vulnerability — TIBCO EBX 8.7 High2023-02-22
CVE-2022-41564 TIBCO Operational Intelligence Hawk Redtail Credential Exposure Vulnerability — TIBCO Hawk 6.8 Medium2023-02-14
CVE-2022-41563 TIBCO JasperReports Server Stored XSS Vulnerability — TIBCO JasperReports Server 9.0 Critical2022-12-15
CVE-2022-41562 TIBCO JasperReports Server XSS Issue on Roles — TIBCO JasperReports Server 8.4 High2022-12-15
CVE-2022-41561 TIBCO JasperReports Server RCE Vulnerability — TIBCO JasperReports Server 9.1 Critical2022-12-15
CVE-2022-41560 TIBCO Nimbus Denial of Service Vulnerability — TIBCO Nimbus 6.5 Medium2022-12-12
CVE-2022-41559 TIBCO Nimbus Open Redirect Vulnerability — TIBCO Nimbus 9.3 Critical2022-12-12
CVE-2022-41558 TIBCO Spotfire Stored Cross Site Scripting (XSS) Vulnerability — TIBCO Spotfire Analyst 9.0 Critical2022-11-15
CVE-2022-30578 TIBCO EBX Add-ons Stored XSS vulnerability — TIBCO EBX Add-ons 8.0 High2022-09-21
CVE-2022-30577 TIBCO EBX Stored XSS vulnerability — TIBCO EBX 8.0 High2022-09-21
CVE-2022-30579 TIBCO Spotfire Server Blind SSRF vulnerability — TIBCO Spotfire Analytics Platform for AWS Marketplace 7.1 High2022-09-20
CVE-2022-30576 TIBCO Statistica Stored Cross Site Scripting (XSS) Vulnerability — TIBCO Data Science - Workbench 8.7 High2022-08-16
CVE-2022-30575 TIBCO Statistica Reflected Cross Site Scripting (XSS) Vulnerability — TIBCO Data Science - Workbench 7.3 High2022-08-16
CVE-2022-30574 TIBCO eFTL Secret Jacking — TIBCO FTL - Community Edition 4.6 Medium2022-08-09
CVE-2022-30573 TIBCO FTL Privilege Escalation — TIBCO FTL - Community Edition 6.7 Medium2022-08-09
CVE-2022-30572 TIBCO iWay Service Manager Directory Traversal Vulnerability — TIBCO iWay Service Manager 6.5 Medium2022-08-02

This page lists every published CVE security advisory associated with TIBCO Software Inc.. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.