安全漏洞 |
---|
产品 & Release Notes | 影响的版本 | 修复的版本 | 漏洞描述 | CVE ID | CVSS 严重性 |
---|
Bamboo Data Center 和 Server | - 9.5.0 to 9.5.1
- 9.4.0 to 9.4.3
- 9.3.0 to 9.3.6
- 9.2.0 to 9.2.11 (LTS)
- 9.1.0 to 9.1.3
- 9.0.0 to 9.0.4
- 8.2.0 to 8.2.9
- 其它更低的版本
| - 9.6.0 (LTS) 或 9.5.2
- 9.4.4
- 9.2.12 (LTS)
| SQLi (SQL Injection) org.postgresql:postgresql Dependency in Bamboo Data Center and Server | CVE-2024-1597 | 10.0 Critical |
DoS (Denial of Service) software.amazon.ion:ion-java Dependency in Bamboo Data Center and Server | CVE-2024-21634 | 7.5 High |
Bitbucket Data Center 和 Server | - 8.18.0
- 8.17.0 to 8.17.1
- 8.16.0 to 8.16.2
- 8.15.0 to 8.15.3
- 8.14.0 to 8.14.4
- 8.13.0 to 8.13.5
- 8.12.0 to 8.12.3
- 8.11.0 to 8.11.1
- 8.10.0 to 8.10.1
- 8.9.0 to 8.9.9 (LTS)
- 其它更低的版本 (除了 7.21.22)
| - 8.19.0 (LTS)
- 8.18.1
- 8.17.2
- 8.16.3 to 8.16.4
- 8.15.4 to 8.15.5
- 8.14.5 to 8.14.6
- 8.13.6
- 8.9.10 to 8.9.11 (LTS)
- 7.21.22 to 7.21.23
| DoS (Denial of Service) software.amazon.ion:ion-java Dependency in Bitbucket Data Center and Server | CVE-2024-21634 | 7.5 High |
Confluence Data Center 和 Server | | 8.8.1 8.5.7 (LTS) 7.19.20 (LTS)
| Path Traversal in Confluence Data Center | CVE-2024-21677 | 8.3 High |
DoS (Denial of Service) org.eclipse.jetty:jetty-http Dependency in Confluence Data Center and Server | CVE-2023-36478 | 7.5 High |
Jira Software Data Center 和 Server
| - 9.12.0 to 9.12.2 LTS
- 9.11.0 to 9.11.3
- 9.10.0 to 9.10.2
- 9.9.0 to 9.9.2
- 9.8.0 to 9.8.2
- 9.7.0 to 9.7.2
- 9.6.0
- 9.5.0 to 9.5.1
- 9.4.0 to 9.4.17 LTS
- 9.3.0 to 9.3.3
- 9.2.0 to 9.2.1
- 9.1.0 to 9.1.1
- 9.0.0
- 其它更低的版本
| - 9.14.1 或 9.14.0
- 9.13.0 to 9.13.1
- 9.12.3 to 9.12.5 (LTS)
- 9.4.18 (LTS)
| DoS (Denial of Service) org.codehaus.jettison:jettison Dependency in Jira Software Data Center and Server | CVE-2022-40150 | 7.5 High |
DoS (Denial of Service) org.xerial.snappy:snappy-java Dependency in Jira Software Data Center and Server | CVE-2023-34455 | 7.5 High |
RCE (Remote Code Execution) org.apache.xmlgraphics:batik-script Dependency in Jira Software Data Center and Server | CVE-2022-42890 | 7.5 High |
RCE (Remote Code Execution) org.apache.xmlgraphics:batik-bridge Dependency in Jira Software Data Center and Server | CVE-2022-41704 | 7.5 High |
SSRF (Server-Side Request Forgery) org.apache.xmlgraphics:batik-bridge Dependency in Jira Software Data Center and Server | CVE-2022-40146 | 7.5 High |
DoS (Denial of Service) org.codehaus.jettison:jettison Dependency in Jira Software Data Center and Server | CVE-2023-1436 | 7.5 High |
DoS (Denial of Service) org.codehaus.jettison:jettison Dependency in Jira Software Data Center and Server | CVE-2022-45685 | 7.5 High |
DoS (Denial of Service) net.sourceforge.nekohtml:nekohtml Dependency in Jira Software Data Center and Server | CVE-2022-29546 | 7.5 High |
DoS (Denial of Service) org.codehaus.jettison:jettison Dependency in Jira Software Data Center and Server | CVE-2022-40149 | 7.5 High |
DoS (Denial of Service) org.apache.avro:avro Dependency in Jira Software Data Center and Server | CVE-2023-39410 | 7.5 High |
DoS (Denial of Service) org.xerial.snappy:snappy-java Dependency in Jira Software Data Center and Server | CVE-2023-34454 | 7.5 High |
DoS (Denial of Service) org.xerial.snappy:snappy-java Dependency in Jira Software Data Center and Server | CVE-2023-34453 | 7.5 High |
DoS (Denial of Service) org.xerial.snappy:snappy-java Dependency in Jira Software Data Center and Server | CVE-2023-43642 | 7.5 High |
DoS (Denial of Service) com.google.protobuf:protobuf-java Dependency in Jira Software Data Center and Server | CVE-2022-3509 | 7.5 High |
DoS (Denial of Service) com.google.protobuf:protobuf-java Dependency in Jira Software Data Center and Server | CVE-2022-3171 | 7.5 High |
DoS (Denial of Service) org.json:json Dependency in Jira Software Data Center and Server | CVE-2023-5072 | 7.5 High |
DoS (Denial of Service) org.json:json Dependency in Jira Software Data Center and Server | CVE-2022-45688 | 7.5 High |
RCE (Remote Code Execution) xalan:xalan Dependency in Jira Software Data Center and Server | CVE-2022-34169 | 7.5 High |
DoS (Denial of Service) net.sourceforge.nekohtml:nekohtml Dependency in Jira Software Data Center and Server | CVE-2022-24839 | 7.5 High |
DoS (Denial of Service) net.sourceforge.nekohtml:nekohtml Dependency in Jira Software Data Center and Server | CVE-2022-28366 | 7.5 High |