Skip to content
Noroxi

syncfusion records

7 published records for vendor syncfusion.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

  1. 23
  2. 26

Bar: total · dark part: CISA KEV.

All records

7 records
  • The Syncfusion EJ2 Node File Provider 0102271 is vulnerable to filesystem-server.js directory traversal.

    CriticalCVSS 9.8No exploitEPSS 2%

    syncfusion · nodejs file system providerJul 12, 2023

  • The Syncfusion EJ2 ASPCore File Provider 3ac357f is vulnerable to Models/PhysicalFileProvider.cs directory traversal.

    CriticalCVSS 9.8No exploitEPSS 2%

    syncfusion · ej2 aspcore file providerJul 12, 2023

  • Bold Reports Standalone Report Designer < 14.1.12 Arbitrary File Read via SVG Processing

    CriticalCVSS 9.3No exploitEPSS 1%

    syncfusion · standalone report designerJul 23, 2026

  • Bold Reports Standalone Report Designer < 14.1.12 Arbitrary File Read via Font Processing

    CriticalCVSS 9.3No exploitEPSS 1%

    syncfusion · standalone report designerJul 23, 2026

  • Bold Reports Standalone Report Designer < 14.1.12 Arbitrary File Read via Database Download

    CriticalCVSS 9.3No exploitEPSS 1%

    syncfusion · standalone report designerJul 23, 2026

  • Bold Reports Standalone Report Designer < 14.1.12 Path Traversal RCE via File Upload

    HighCVSS 8.7No exploitEPSS 1%

    syncfusion · standalone report designerJul 23, 2026

  • SyncFusion 30.1.37 is vulnerable to Cross Site Scripting (XSS) via the Document-Editor reply to comment field and Chat-UI Chat message.

    MediumCVSS 5.4No exploitEPSS 0%

    syncfusion · syncfusionMar 20, 2026