Affected versions of Atlassian Fisheye/Crucible allow remote attackers to impact the application's availability via a Denial of Service (DoS) vulnerability in the MessageBundleResource within Atlassian Gadgets. The affected versions are before version 4.8.4.
Link | Tags |
---|---|
https://jira.atlassian.com/browse/CRUC-8501 | issue tracking patch vendor advisory |
https://jira.atlassian.com/browse/FE-7332 | issue tracking patch vendor advisory |