Known vulnerabilities in Crowd Data Center - page 4

Vendor: Atlassian
Software CPE: cpe:2.3:a:atlassian:crowd_data_center:*:*:*:*:*:*:*:*
Total vulnerabilities: 79
Public exploits: 16
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Crowd Data Center Crowd Data Center is affected by 79 known vulnerabilities: 20 high, 54 medium, 5 low Critical High Medium Low

Vulnerabilities (79)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU87607 - Improper Access Control
CVE-2024-22257
CWE-284 Medium
No
No
5.0.11, 5.1.9, 5.2.4 19.03.2024 SB2024031915
SB2024041659
SB2024041660
and 26 more
#VU83533 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2023-46589
CWE-444 Medium
No
No
5.0.10, 5.1.8, 5.2.3 28.11.2023 SB2023112846
SB2023121851
SB2023122831
and 78 more
#VU81728 - Resource exhaustion
CVE-2023-44487
CWE-400 High
Available
Exploited
5.0.8, 5.1.6, 5.2.1, 6.2.3 10.10.2023 SB2023101023
SB2023101024
SB2023101037
and 650 more
#VU65892 - Insufficient Verification of Data Authenticity
CVE-2022-26137
CWE-345 Medium
No
No
4.3.8, 4.4.2, 5.0.1 29.07.2022 SB2022072917
#VU65891 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-26136
CWE-79 Low
No
No
4.3.8, 4.4.2, 5.0.1 29.07.2022 SB2022072917
#VU58198 - Exposure of sensitive information to an unauthorized actor
CVE-2021-40690
CWE-200 Medium
No
No
5.2.2 16.11.2021 SB2021111622
SB2021111712
SB2022012032
and 37 more
#VU49368 - Deserialization of Untrusted Data
CVE-2020-36179
CWE-502 High
No
No
5.0.11, 5.1.9, 5.2.4 07.01.2021 SB2021011105
SB2021042826
SB2021050708
and 18 more
#VU49369 - Deserialization of Untrusted Data
CVE-2020-36180
CWE-502 High
Available
No
5.0.11, 5.1.9, 5.2.4 07.01.2021 SB2021011105
SB2021042826
SB2021050708
and 16 more
#VU49370 - Deserialization of Untrusted Data
CVE-2020-36182
CWE-502 High
No
No
5.0.11, 5.1.9, 5.2.4 07.01.2021 SB2021011105
SB2021042826
SB2021050708
and 17 more
#VU49367 - Deserialization of Untrusted Data
CVE-2020-36188
CWE-502 High
Available
No
5.0.11, 5.1.9, 5.2.4 07.01.2021 SB2021011105
SB2021042826
SB2021050708
and 17 more
#VU49372 - Deserialization of Untrusted Data
CVE-2020-36181
CWE-502 High
No
No
5.0.11, 5.1.9, 5.2.4 07.01.2021 SB2021011105
SB2021042826
SB2021050708
and 17 more
#VU49373 - Deserialization of Untrusted Data
CVE-2020-36184
CWE-502 High
Available
No
5.0.11, 5.1.9, 5.2.4 07.01.2021 SB2021011105
SB2021042826
SB2021050708
and 17 more
#VU49378 - Deserialization of Untrusted Data
CVE-2020-35728
CWE-502 High
Available
No
5.0.11, 5.1.9, 5.2.4 27.12.2020 SB2021011105
SB2021042826
SB2021050708
and 15 more
#VU46305 - Improper Control of Generation of Code ('Code Injection')
CVE-2020-24616
CWE-94 High
Available
No
5.0.11, 5.1.9, 5.2.4 25.08.2020 SB2020090706
SB2022060909
SB2022101121
and 14 more
#VU26494 - Deserialization of Untrusted Data
CVE-2020-10673
CWE-502 High
Available
No
5.0.11, 5.1.9, 5.2.4 01.04.2020 SB2020030909
SB2020073033
SB2022060909
and 17 more
#VU26493 - Deserialization of Untrusted Data
CVE-2020-10672
CWE-502 High
No
No
5.0.11, 5.1.9, 5.2.4 01.04.2020 SB2020030909
SB2020073033
SB2022060909
and 16 more
#VU26490 - Deserialization of Untrusted Data
CVE-2020-11113
CWE-502 High
Available
No
5.0.11, 5.1.9, 5.2.4 01.04.2020 SB2020030909
SB2020042318
SB2020073033
and 16 more
#VU13527 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2017-7656
CWE-444 Low
No
No
5.0.11, 5.1.9, 5.2.4 30.06.2018 SB2018070205
SB2018082001
SB2022041923
and 17 more
#VU9654 - Information Exposure Through Timing Discrepancy
CVE-2017-9735
CWE-208 Low
No
No
5.0.11, 5.1.9, 5.2.4 17.06.2017 SB2017061704
SB2021072132
SB2023042803
and 12 more


Showing elements 61 - 80 out of 79