All 2 CVE vulnerabilities found in Sparx Enterprise Architect, with AI-generated Chinese analysis, references, and POCs.
Vendor: Sparx Systems Pty Ltd.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-15622 | Sparx Enterprise Architect Client reveals plaintext OAuth2 client secret CWE-522 | 6.5AI | MediumAI | 2026-04-17 |
| CVE-2025-15621 | Sparx Enterprise Architect Client does not verify the receiver of OAuth2 credentials during OpenID authentication CWE-522 | 8.8AI | HighAI | 2026-04-16 |
All 2 known CVE vulnerabilities affecting Sparx Enterprise Architect with full Chinese analysis, references, and POCs where available.