CVE-2019-11205: TIBCO Spotfire Analytics Platform For Aws
Medium severity, CVSS 6.1. EPSS: 1.3% chance of exploitation in the next 30 days.
The web server component of TIBCO Software Inc.'s TIBCO Spotfire Analytics Platform for AWS Marketplace, and TIBCO Spotfire Server contains vulnerabilities that theoretically allow reflected cross-site scripting (XSS) attacks. Affected releases are TIBCO Software Inc.'s TIBCO Spotfire Analytics Platform for AWS Marketplace: 7.14.0; 7.14.1; 10.0.0; 10.0.1; 10.1.0; 10.2.0, and TIBCO Spotfire Server: 7.14.0; 10.0.0; 10.0.1; 10.1.0; 10.2.0.
Affected products
- TIBCO Spotfire Analytics Platform For Aws: version 7.14.0 only; version 7.14.1 only; version 10.0.0 only; version 10.0.1 only; version 10.1.0 only; version 10.2.0 only
- TIBCO Spotfire Server: version 7.14.0 only; version 10.0.0 only; version 10.0.1 only; version 10.1.0 only; version 10.2.0 only
Published 2019-05-14. Last modified 2026-06-17.