CVE-2023-26214: TIBCO Businessconnect
Medium severity, CVSS 5.4. EPSS: 0.4% chance of exploitation in the next 30 days.
The BusinessConnect UI component of TIBCO Software Inc.'s TIBCO BusinessConnect contains easily exploitable Reflected Cross Site Scripting (XSS) vulnerabilities that allow a low privileged attacker with network access to execute scripts targeting the affected system or the victim's local system. Affected releases are TIBCO Software Inc.'s TIBCO BusinessConnect: versions 7.3.0 and below.
Affected products
- TIBCO Businessconnect: before 7.3.1 (fixed in 7.3.1)
Published 2023-02-22. Last modified 2026-06-17.