📦 Springblade

by Bladex

🔍 What is Springblade?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-70982

CRITICAL CVSS 9.9 Jan 26, 2026

CVE-2025-70982 is an improper access control vulnerability in SpringBlade v4.5.0 that allows attackers with low-level privileges to import sensitive user data without proper authorization. This affect...

CVE-2025-70983

CRITICAL CVSS 9.9 Jan 23, 2026

This vulnerability allows attackers with low-level privileges to escalate their privileges in SpringBlade v4.5.0 due to incorrect access control in the authRoutes function. Organizations using SpringB...

CVE-2023-40787

CRITICAL CVSS 9.8 Aug 29, 2023

This CVE describes a SQL injection vulnerability in SpringBlade v3.6.0 where user-submitted parameters are not properly sanitized with quotation marks during SQL query execution. Attackers can exploit...

CVE-2022-27360

CRITICAL CVSS 9.8 May 5, 2022

SpringBlade v3.2.0 and below contains a SQL injection vulnerability in the customSqlSegment component that allows attackers to execute arbitrary SQL commands. This affects all deployments using vulner...

CVE-2024-33332

HIGH CVSS 7.5 Apr 30, 2024

This vulnerability in SpringBlade 3.7.1 allows attackers to retrieve sensitive information through a crafted GET request to the tenant API endpoint. It affects systems running vulnerable versions of S...

CVE-2024-8023

MEDIUM CVSS 6.3 Aug 21, 2024

This critical SQL injection vulnerability in SpringBlade 4.1.0 allows remote attackers to execute arbitrary SQL commands through the /api/blade-system/menu/list endpoint. Organizations using SpringBla...