A vulnerability marked as critical has been reported in Jaspersoft JasperReports Server. Affected by this issue is some unknown functionality. The manipulation leads to xml external entity reference.
This vulnerability is traded as CVE-2026-16626. It is possible to initiate the attack remotely. There is no exploit available.
It is suggested to upgrade the affected component.