NVD Vulnerability Detail
Search Exploit, PoC
CVE-2026-36765
Summary

An XML external entity (XXE) vulnerability in the /designer/loadReport endpoint of SpringBlade v4.8.0 allows authenticated attackers to execute arbitrary code via injecting a crafted payload.

Publication Date May 1, 2026, 3:16 a.m.
Registration Date May 1, 2026, 4:07 a.m.
Last Update May 1, 2026, 3:16 a.m.
Related information, measures and tools
Common Vulnerabilities List