Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

TIBCO Software Inc. — Vulnerabilities & Security Advisories 159

Browse all 159 CVE security advisories affecting TIBCO Software Inc.. AI-powered Chinese analysis, POCs, and references for each vulnerability.

TIBCO Software Inc. provides enterprise integration and analytics platforms, primarily facilitating data connectivity and business process automation for large organizations. Historically, its software portfolio has exhibited a significant volume of vulnerabilities, with 159 Common Vulnerabilities and Exposures (CVEs) currently recorded. The most prevalent flaw classes include remote code execution (RCE), cross-site scripting (XSS), and privilege escalation issues, often stemming from improper input validation and insufficient access controls within its integration middleware and analytics tools. While TIBCO has not been the subject of a singular, widely publicized catastrophic breach comparable to major data leaks, the sheer number of disclosed vulnerabilities indicates persistent challenges in secure coding practices across its diverse product suite. These findings underscore the necessity for rigorous patch management and continuous security monitoring for enterprises relying on TIBCO’s infrastructure to mitigate potential exploitation risks.

CVE IDTitleCVSSSeverityPublished
CVE-2022-30571 TIBCO iWay Service Manager Reflected Cross Site Scripting (XSS) Vulnerability — TIBCO iWay Service Manager 8.1 High2022-08-02
CVE-2022-30570 TIBCO Data Virtualization Access Control Vulnerability — TIBCO Data Virtualization 6.5 Medium2022-07-19
CVE-2022-22778 TIBCO BusinessConnect Trading Community Management Cross-Site Request Forgery Vulnerability — TIBCO BusinessConnect Trading Community Management 8.8 High2022-05-18
CVE-2022-22777 TIBCO BusinessConnect Trading Community Management Reflected Cross Site Scripting Vulnerability — TIBCO BusinessConnect Trading Community Management 6.1 Medium2022-05-18
CVE-2022-22776 TIBCO BusinessConnect Trading Community Management Stored Cross Site Scripting Vulnerability — TIBCO BusinessConnect Trading Community Management 8.0 High2022-05-18
CVE-2022-22775 TIBCO ActiveMatrix BPM Reflected Cross Site Scripting (XSS) vulnerability — TIBCO BPM Enterprise 8.1 High2022-05-17
CVE-2022-22773 TIBCO JasperReports Server Reflected Cross Site Scripting (XSS) vulnerability — TIBCO JasperReports Server 7.7 High2022-05-17
CVE-2022-22774 TIBCO Managed File Transfer Command Center XXE Vulnerability — TIBCO Managed File Transfer Command Center 8.6 High2022-05-10
CVE-2022-22772 TIBCO Managed File Transfer Platform Server Remote Code Execution Vulnerability — TIBCO Managed File Transfer Platform Server for UNIX 8.5 High2022-03-30
CVE-2022-22771 TIBCO JasperReports Library Directory Traversal Vulnerability — TIBCO JasperReports Library 8.8 -2022-03-15
CVE-2022-22770 TIBCO AuditSafe API Authentication vulnerability — TIBCO AuditSafe 9.8 Critical2022-02-15
CVE-2021-43050 TIBCO BusinessConnect Container Edition administrative username and passwords leakage — TIBCO BusinessConnect Container Edition 8.4 High2022-02-15
CVE-2021-43049 TIBCO BusinessConnect Container Edition username and password leakage — TIBCO BusinessConnect Container Edition 9.8 Critical2022-02-15
CVE-2022-22769 TIBCO EBX vulnerabilities — TIBCO EBX 8.0 High2022-01-19
CVE-2021-35500 TIBCO Data Virtualization Arbitrary File Download vulnerability — TIBCO Data Virtualization 6.3 Medium2022-01-12
CVE-2021-43055 TIBCO eFTL Token Caching Vulnerability — TIBCO eFTL - Community Edition 5.9 Medium2022-01-11
CVE-2021-43054 TIBCO eFTL Token Generation Vulnerability — TIBCO eFTL - Community Edition 7.1 High2022-01-11
CVE-2021-43053 TIBCO FTL Secret Exposure Vulnerability — TIBCO FTL - Community Edition 8.5 High2022-01-11
CVE-2021-43052 TIBCO FTL Secret Generation Vulnerability — TIBCO FTL - Community Edition 9.3 Critical2022-01-11
CVE-2021-43051 TIBCO Spotfire Server API Authorization Vulnerability — TIBCO Spotfire Server 7.1 High2021-12-14
CVE-2021-43048 TIBCO PartnerExpress Click-Jacking vulnerability — TIBCO PartnerExpress 9.8 Critical2021-11-16
CVE-2021-43047 TIBCO PartnerExpress Cross Site Scripting vulnerabilities — TIBCO PartnerExpress 9.0 Critical2021-11-16
CVE-2021-43046 TIBCO PartnerExpress Session Token in URL — TIBCO PartnerExpress 7.5 High2021-11-16
CVE-2021-35499 TIBCO Nimbus Stored Cross-site Scripting (XSS) vulnerabilities — TIBCO Nimbus 8.0 High2021-10-26
CVE-2021-35498 TIBCO EBX Insecure Login Mechanism — TIBCO EBX 9.8 Critical2021-10-13
CVE-2021-35496 TIBCO JasperReports XML Eternal Entity (XXE) vulnerability — TIBCO JasperReports Server 7.5 High2021-10-12
CVE-2021-35495 TIBCO JasperReports FTP Password exposed — TIBCO JasperReports Server 9.0 Critical2021-10-12
CVE-2021-35494 TIBCO JasperReports unauthorized access to temporary object — TIBCO JasperReports Server 5.7 Medium2021-10-12
CVE-2021-35497 TIBCO FTL unvalidated SAN in client certificates — TIBCO ActiveSpaces - Community Edition 7.5 High2021-10-05
CVE-2021-35493 TIBCO WebFOCUS Cross Site Scripting vulnerabilities — TIBCO WebFOCUS Client 9.0 Critical2021-09-14

This page lists every published CVE security advisory associated with TIBCO Software Inc.. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.