CVE-2024-1137: TIBCO Software Inc TIBCO Activespaces - Enterprise Edition

Medium severity, CVSS 4.3. EPSS: 0.3% chance of exploitation in the next 30 days.

The Proxy and Client components of TIBCO Software Inc.'s TIBCO ActiveSpaces - Enterprise Edition contain a vulnerability that theoretically allows an Active Spaces client to passively observe data traffic to other clients. Affected releases are TIBCO Software Inc.'s TIBCO ActiveSpaces - Enterprise Edition: versions 4.4.0 through 4.9.0.

Affected products

  • TIBCO Software Inc TIBCO Activespaces - Enterprise Edition: from 4.4.0, up to and including 4.9.0

Published 2024-03-12. Last modified 2026-06-17.