The Spotfire web server component of TIBCO Software Inc.'s TIBCO Spotfire Analytics Platform for AWS Marketplace, and TIBCO Spotfire Server contains multiple vulnerabilities that may allow persistent and reflected cross-site scripting attacks. Affected releases are TIBCO Software Inc. TIBCO Spotfire Analytics Platform for AWS Marketplace: versions up to and including 10.0.0, and TIBCO Spotfire Server: versions up to and including 7.10.1; 7.11.0; 7.11.1; 7.12.0; 7.13.0; 7.14.0; 10.0.0.
| Software | From | Fixed in |
|---|---|---|
| tibco / spotfire_server | 7.11.0 | 7.11.0.x |
| tibco / spotfire_server | 7.12.0 | 7.12.0.x |
| tibco / spotfire_analytics_platform_for_aws | - | 10.0.0.x |
| tibco / spotfire_server | - | 7.10.1.x |
| tibco / spotfire_server | 7.11.1 | 7.11.1.x |
| tibco / spotfire_server | 7.13.0 | 7.13.0.x |
| tibco / spotfire_server | 7.14.0 | 7.14.0.x |
| tibco / spotfire_server | 10.0.0 | 10.0.0.x |