# Security advisory ## June 22, 2026 A remote code execution vulnerability in the Reports module (Query Report) has been fixed in ServiceDesk Plus version 15290. Please refer to this [security advisory](https://www.manageengine.com/products/service-desk/cve-2026-12507.html) to learn more and upgrade to the latest service pack.