CVE-2024-46479: Venki Supravizio Bpm

High severity, CVSS 8.8. EPSS: 0.8% chance of exploitation in the next 30 days.

Venki Supravizio BPM through 18.0.1 was discovered to contain an arbitrary file upload vulnerability. An authenticated attacker may upload a malicious file, leading to remote code execution.

Affected products

  • Venki Supravizio Bpm: up to and including 18.0.1

Published 2025-01-13. Last modified 2026-06-17.