MEDIUM
The NotificationRepresentationFactoryImpl class in Atlassian Universal Plugin Manager before version 2.22.9 allows remote attackers to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability in the name of user submitted add-on names
Published Jul 16, 2018
5.4
MEDIUMCVSS 3.0
EPSS 0.59%
Description
Affected products
Remediation
Metrics
References (1)
Change history (0)
No recorded changes yet.