Skip to main content

Vendor/product archive

atlassian / confluence_data_center CVEs

Beta · best-effort

37 CVEs tagged to atlassian / confluence_data_center7 Critical, 19 High, 11 Medium, 0 Low, 0 Unrated.

CVE-2022-42978

Published Nov 15, 2022

In the Netic User Export add-on before 1.3.5 for Atlassian Confluence, authorization is mishandled. An unauthenticated attacker could access files on the remote system.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-42977

Published Nov 15, 2022

The Netic User Export add-on before 1.3.5 for Atlassian Confluence has the functionality to generate a list of users in the application, and export it. During export, the HTTP req…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-26137

Published Jul 20, 2022

A vulnerability in multiple Atlassian products allows a remote, unauthenticated attacker to cause additional Servlet Filters to be invoked when the application processes requests…

CVSS 8.8 · High
evidence mentions
2
Buzz score
17.5

CVE-2022-26136

Published Jul 20, 2022

A vulnerability in multiple Atlassian products allows a remote, unauthenticated attacker to bypass Servlet Filters used by first and third party apps. The impact depends on which…

CVSS 9.8 · Critical
evidence mentions
2
Buzz score
17.5
Showing 1-25 of 37 CVEsPage 1 of 2