CVE-2026-16626EPSS p37.2%
CVE-2026-16626CVE-2026-16626
Description
Improper restriction of XML external entity reference vulnerability (unauthenticated) in Jaspersoft JasperReports Server.
This issue affects JasperReports Server: from 9.0.0 before HF-9 and from 10.0.0 before HF-10.
Scoring
| EPSS | 0.45% probability of exploitation · percentile 37.2% · 2026-10-05T12:00:23Z |
| Last modified | 2026-08-31 |