PT-2026-58032 · Tibco · Spotfire Enterprise With External Consumers+2
CVE-2026-8590
·
Published
2026-07-14
·
Updated
2026-07-14
CVSS v4.0
8.7
High
| Vector | AV:N/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:L/SC:N/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions
Spotfire Enterprise versions prior to 14.0.13, 14.4.3, 14.5.1, 14.6.3, 14.7.1, and 14.8.1
Spotfire Enterprise with External Consumers versions prior to 14.0.13, 14.5.1, 14.6.1, 14.6.3, 14.7.1, and 14.8.1
Spotfire on Kubernetes versions prior to 4.2.1, 5.0.X, and 6.0.X
Description
A security flaw exists within the Spotfire Server modules. Offensive activities targeting this issue have been identified in real-world incidents.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Spotfire Enterprise
Spotfire Enterprise With External Consumers
Spotfire On Kubernetes