Security Advisory

CVE-2026-36765

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-04-30 00:00:00
Last updated 2026-05-04 17:52:49
Assigner mitre
State PUBLISHED

Description

An XML external entity (XXE) vulnerability in the /designer/loadReport endpoint of SpringBlade v4.8.0 allows authenticated attackers to execute arbitrary code via injecting a crafted payload.