Filters

VMware Aria AutomationAria Automation contains a Missing Access Control vulnerability. An authenticated malicious actor …

First published (updated )

Atlassian Confluence Data CenterAtlassian Confluence Data Center and Server Template Injection Vulnerability

First published (updated )

Microsoft Power PlatformMicrosoft Power Platform Connector Spoofing Vulnerability

First published (updated )

Atlassian Confluence Data CenterThis Template Injection vulnerability allows an authenticated attacker, including one with anonymous…

First published (updated )

Atlassian CompanionCertain versions of the Atlassian Companion App for MacOS were affected by a remote code execution v…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Atlassian Assets Discovery Data CenterThis vulnerability, if exploited, allows an attacker to perform privileged RCE (Remote Code Executio…

First published (updated )

Atlassian Confluence Data CenterAtlassian Confluence Data Center and Server Improper Authorization Vulnerability

First published (updated )

Atlassian Confluence Data CenterAtlassian Confluence Data Center and Server Broken Access Control Vulnerability

First published (updated )

Atlassian Jira Service ManagementAn authentication vulnerability was discovered in Jira Service Management Server and Data Center whi…

First published (updated )

Atlassian BitbucketCommand Injection

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Atlassian CrowdAffected versions of Atlassian Crowd allow an attacker to authenticate as the crowd application via …

First published (updated )

Atlassian Questions For ConfluenceAtlassian Questions For Confluence App Hard-coded Credentials Vulnerability

First published (updated )

Atlassian BitbucketA vulnerability in multiple Atlassian products allows a remote, unauthenticated attacker to bypass S…

First published (updated )

Atlassian Confluence Data CenterAtlassian Confluence Server and Data Center Remote Code Execution Vulnerability

First published (updated )

Atlassian Bitbucket Data CenterSharedSecretClusterAuthenticator in Atlassian Bitbucket Data Center versions 5.14.0 and later before…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Atlassian Jira Service ManagementA vulnerability in Jira Seraph allows a remote, unauthenticated attacker to bypass authentication by…

First published (updated )

Atlassian CrucibleVarious rest resources in Fisheye and Crucible before version 4.8.9 allowed remote attackers to brut…

First published (updated )

Atlassian Data CenterAffected versions of Atlassian Jira Server and Data Center allow remote attackers with administrator…

First published (updated )

Atlassian FloodlightInput Validation

First published (updated )

Atlassian FloodlightInput Validation

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Atlassian FloodlightInteger Overflow

First published (updated )

Atlassian Jira Service DeskCode Injection

First published (updated )

Atlassian Confluence Data CenterAtlassian Confluence Server and Data Center Object-Graph Navigation Language (OGNL) Injection Vulnerability

First published (updated )

Atlassian Saml Single Sign OnThe resolution SAML SSO apps for Atlassian products allow a remote attacker to login to a user accou…

First published (updated )

Atlassian Jira Data CenterJira Data Center, Jira Core Data Center, Jira Software Data Center from version 6.3.0 before 8.5.16,…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Atlassian Alfresco Enterprise Content ManagementAn issue was discovered in Alfresco Enterprise Content Management (ECM) before 6.2.1. A user with pr…

First published (updated )

CVE-2021-26068An endpoint in Atlassian Jira Server for Slack plugin from version 0.0.3 before version 2.0.15 allow…

First published (updated )

Atlassian Jira CommentThe execute function in in the Atlassian gajira-comment GitHub Action before version 2.0.2 allows re…

First published (updated )

Atlassian Jira CreateThe preprocessArgs function in the Atlassian gajira-create GitHub Action before version 2.0.1 allows…

First published (updated )

Atlassian JIRAThis issue exists to document that a security improvement in the way that Jira Server and Data Cente…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Atlassian JIRAThe way in which velocity templates were used in Atlassian Jira Server and Data Center prior to vers…

First published (updated )

Atlassian BitbucketOS Command Injection

First published (updated )

Atlassian Jira ServerAtlassian Jira Server and Data Center Server-Side Template Injection Vulnerability

First published (updated )

Atlassian Jira Service ManagementXEE

First published (updated )

Atlassian SourcetreeAn argument injection vulnerability in Atlassian Sourcetree for Windows's URI handlers, in all versi…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Atlassian CrowdAtlassian Crowd and Crowd Data Center Remote Code Execution Vulnerability

First published (updated )

Atlassian BitbucketPath Traversal

First published (updated )

Atlassian ConfluenceAtlassian Confluence Server and Data Center Path Traversal Vulnerability

First published (updated )

Atlassian ConfluenceSSRF

First published (updated )

Atlassian ConfluenceAtlassian Confluence Server and Data Center Server-Side Template Injection Vulnerability

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Atlassian SourcetreeCommand Injection

First published (updated )

Atlassian SourcetreeThere was an argument injection vulnerability in Atlassian Sourcetree for macOS from version 1.2 bef…

First published (updated )

Atlassian SourcetreeThere was an argument injection vulnerability in Atlassian Sourcetree for Windows from version 0.5a …

First published (updated )

Atlassian SourcetreeThere was an argument injection vulnerability in Sourcetree for macOS from version 1.0b2 before vers…

First published (updated )

Atlassian SourcetreeThere was an argument injection vulnerability in Sourcetree for Windows from version 0.5.1.0 before …

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Atlassian Jira ServerCode Injection

First published (updated )

Atlassian SourcetreeThere was an argument injection vulnerability in Sourcetree for macOS via filenames in Mercurial rep…

First published (updated )

Atlassian BambooInput Validation

First published (updated )

Atlassian BitbucketIn browser editing in Atlassian Bitbucket Server from version 4.13.0 before 5.4.8 (the fixed version…

First published (updated )

Atlassian FishEyeIt was possible for double OGNL evaluation in certain redirect action and in WebWork URL and Anchor …

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203