CVE-2024-54795: Eng Spagobi

Medium severity, CVSS 5.4. EPSS: 0.5% chance of exploitation in the next 30 days.

SpagoBI v3.5.1 contains multiple Stored Cross-Site Scripting (XSS) vulnerabilities in the create/edit forms of the worksheet designer function.

Affected products

  • Eng Spagobi: version 3.5.1 only

Published 2025-01-21. Last modified 2026-06-17.