Hipchat
Atlassian · 5 CVEs
CVE-2018-1000419
MEDIUM
An improper authorization vulnerability exists in Jenkins HipChat Plugin 2.2.0 and earlier in HipChatNotifier.java that…
Jan 9, 2019
CVE-2018-1000418
HIGH
An improper authorization vulnerability exists in Jenkins HipChat Plugin 2.2.0 and earlier in HipChatNotifier.java that…
Jan 9, 2019
CVE-2017-14586
CRITICAL
The Hipchat for Mac desktop client is vulnerable to client-side remote code execution via video call link parsing. Hipc…
Nov 27, 2017
CVE-2017-8058
MEDIUM
Acceptance of invalid/self-signed TLS certificates in Atlassian HipChat before 3.16.2 for iOS allows a man-in-the-middl…
May 5, 2017
CVE-2015-5603
MEDIUM
The HipChat for JIRA plugin before 6.30.0 for Atlassian JIRA allows remote authenticated users to execute arbitrary Jav…
Sep 21, 2015
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2018-1000419 | An improper authorization vulnerability exists in Jenkins HipChat Plugin 2.2.0 and earlier in HipChatNotifier.java that allows attackers with Overall/Read acce… | MEDIUM | 1.64% | Jan 9, 2019 |
| CVE-2018-1000418 | An improper authorization vulnerability exists in Jenkins HipChat Plugin 2.2.0 and earlier in HipChatNotifier.java that allows attackers with Overall/Read acce… | HIGH | 1.06% | Jan 9, 2019 |
| CVE-2017-14586 | The Hipchat for Mac desktop client is vulnerable to client-side remote code execution via video call link parsing. Hipchat for Mac desktop clients at or above… | CRITICAL | 3.50% | Nov 27, 2017 |
| CVE-2017-8058 | Acceptance of invalid/self-signed TLS certificates in Atlassian HipChat before 3.16.2 for iOS allows a man-in-the-middle and/or physically proximate attacker t… | MEDIUM | 0.58% | May 5, 2017 |
| CVE-2015-5603 | The HipChat for JIRA plugin before 6.30.0 for Atlassian JIRA allows remote authenticated users to execute arbitrary Java code via unspecified vectors, related… | MEDIUM | 59.31% | Sep 21, 2015 |
Showing 1 to 5 of 5 CVEs