CVE-2018-5430 is an information disclosure vulnerability affecting TIBCO JasperReports Server. CISA lists it in the Known Exploited Vulnerabilities catalog, so affected deployments should be treated as a remediation priority and updated per vendor instructions.
CVE-2018-18809 is a directory traversal vulnerability in TIBCO JasperReports Library. CISA added it to the Known Exploited Vulnerabilities catalog on 2022-12-29, which makes it a priority for remediation. The supplied corpus does not include affected version ranges or CVSS scoring, so defenders should use the vendor advisory and NVD record to confirm exposure and patch status.