Path Traversal Vulnerability in Bold Reports Standalone Report Designer

⚠️ CVE-Referenzen: CVE-2026-65687
Bold Reports (by Syncfusion) - Standalone Report Designer - CRITICAL - CVE-2026-65687. The Bold Reports Standalone Report Designer is susceptible to a missing filepath validation vulnerability within its SVG processing functionality. This flaw enables unauthenticated attackers to issue specially crafted requests that can traverse file paths and read arbitrary files from the server's filesystem. Consequently, sensitive information such as authentication credentials may be exposed, potentially allowing unauthorized access to the application. Organizations using this product should prioritize updates to mitigate the associated risks.
Quelle: securityvulnerability.io