Vulnerabilities > Atlassian > Fisheye > 4.8.2

DATE CVE VULNERABILITY TITLE RISK
2020-11-25 CVE-2020-14190 Resource Exhaustion vulnerability in Atlassian Crucible
Affected versions of Atlassian Fisheye/Crucible allow remote attackers to achieve Regex Denial of Service via user-supplied regex in EyeQL.
network
low complexity
atlassian CWE-400
7.5
2020-11-25 CVE-2020-14191 Unspecified vulnerability in Atlassian Crucible
Affected versions of Atlassian Fisheye/Crucible allow remote attackers to impact the application's availability via a Denial of Service (DoS) vulnerability in the MessageBundleResource within Atlassian Gadgets.
network
low complexity
atlassian
7.5
2020-08-05 CVE-2017-18112 Information Exposure vulnerability in Atlassian Fisheye
Affected versions of Atlassian Fisheye allow remote attackers to view the HTTP password of a repository via an Information Disclosure vulnerability in the logging feature.
network
low complexity
atlassian CWE-200
6.5