Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
atlassian vulnerabilities and exploits
(subscribe to this query)
828
VMScore
CVE-2017-14591
Atlassian Fisheye and Crucible versions less than 4.4.3 and version 4.5.0 are vulnerable to argument injection through filenames in Mercurial repositories, allowing malicious users to execute arbitrary code on a system running the impacted software.
Atlassian Crucible
Atlassian Fisheye
Atlassian Fisheye 4.5.0
Atlassian Crucible 4.5.0
312
VMScore
CVE-2017-18034
The source browse resource in Atlassian Fisheye and Crucible before version 4.5.1 and 4.6.0 allows allows remote attackers that have write access to an indexed repository to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability in via a specially craf...
Atlassian Crucible 4.6.0
Atlassian Fisheye 4.6.0
Atlassian Crucible
Atlassian Fisheye
312
VMScore
CVE-2017-18094
Various resources in Atlassian Fisheye and Crucible before version 4.4.3 (the fixed version for 4.4.x) and 4.5.0 allow remote attackers with administrative privileges to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability through the base path setti...
Atlassian Fisheye 4.5.0
Atlassian Fisheye
Atlassian Crucible 4.5.0
Atlassian Crucible
NA
CVE-2024-21683
This High severity RCE (Remote Code Execution) vulnerability was introduced in version 5.2 of Confluence Data Center and Server. This RCE (Remote Code Execution) vulnerability, with a CVSS Score of 8.3, allows an authenticated malicious user to execute arbitrary code which has hi...
Atlassian Confluence Data Center
Atlassian Confluence Data Center 8.7.2
Atlassian Confluence Data Center 8.8.1
Atlassian Confluence Data Center 8.8.0
Atlassian Confluence Data Center 8.7.1
Atlassian Confluence Data Center 8.9.0
Atlassian Confluence Server
Atlassian Confluence Server 8.7.1
Atlassian Confluence Server 8.7.2
Atlassian Confluence Server 8.8.0
Atlassian Confluence Server 8.8.1
Atlassian Confluence Server 8.9.0
6 Github repositories
435
VMScore
CVE-2014-2314
Directory traversal vulnerability in the Issue Collector plugin in Atlassian JIRA prior to 6.0.4 allows remote malicious users to create arbitrary files via unspecified vectors.
Atlassian Jira
Atlassian Jira 6.0
Atlassian Jira 6.0.1
Atlassian Jira 6.0.2
1 EDB exploit
670
VMScore
CVE-2016-5229
Atlassian Bamboo prior to 5.11.4.1 and 5.12.x prior to 5.12.3.1 does not properly restrict permitted deserialized classes, which allows remote malicious users to execute arbitrary code via vectors related to XStream Serialization.
Atlassian Bamboo 5.12.0
Atlassian Bamboo 5.12.2
Atlassian Bamboo
Atlassian Bamboo 5.12.1
445
VMScore
CVE-2017-7415
Atlassian Confluence 6.x prior to 6.0.7 allows remote malicious users to bypass authentication and read any blog or page via the drafts diff REST resource.
Atlassian Confluence Server 6.0.4
Atlassian Confluence Server 6.0.3
Atlassian Confluence Server 6.0.6
Atlassian Confluence Server 6.0.5
Atlassian Confluence Server 6.0.2
Atlassian Confluence Server 6.0.1
Atlassian Confluence Server 6.0.0
356
VMScore
CVE-2020-14174
Affected versions of Atlassian Jira Server and Data Center allow remote malicious users to view titles of a private project via an Insecure Direct Object References (IDOR) vulnerability in the Administration Permission Helper. The affected versions are before version 7.13.6, from...
Atlassian Jira
Atlassian Jira Software Data Center
Atlassian Jira Server
Atlassian Jira Server 8.10.0
Atlassian Jira Data Center
Atlassian Jira Data Center 8.10.0
356
VMScore
CVE-2019-20106
Comment properties in Atlassian Jira Server and Data Center before version 7.13.12, from 8.0.0 before version 8.5.4, and 8.6.0 before version 8.6.1 allows remote malicious users to make comments on a ticket to which they do not have commenting permissions via a broken access cont...
Atlassian Jira
Atlassian Jira Software Data Center
Atlassian Jira Server
Atlassian Jira Server 8.6.0
Atlassian Jira Data Center
Atlassian Jira Data Center 8.6.0
356
VMScore
CVE-2020-36231
Affected versions of Atlassian Jira Server and Data Center allow remote malicious users to view the metadata of boards they should not have access to via an Insecure Direct Object References (IDOR) vulnerability. The affected versions are before version 8.5.10, and from version 8...
Atlassian Jira
Atlassian Jira Software Data Center
Atlassian Jira Server
Atlassian Jira Server 8.13.3
Atlassian Jira Data Center 8.13.3
Atlassian Jira Data Center
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-23692
CVE-2012-1823
memory leak
CVE-2024-0627
CVE-2024-31402
privilege escalation
CVE-2024-36418
remote code execution
CVE-2024-27844
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
NEXT »