jasperreports is vulnerable to Deserialization of Untrusted Data
87
High Risk
A Java deserialisation vulnerability in Jaspersoft Reports Library leads to Remote Code Execution (RCE), potentially allowing code execution on the affected system.
You are affected if you are using a version that falls within the vulnerable range.
jasperreports is vulnerable to Deserialization of Untrusted Data in versions 1.0.0 - 7.0.6.
Upgrade the net.sf.jasperreports:jasperreports library to a patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant