writeups.xyz writeups.xyz / Atlassian

Title Vulnerabilities Programs Authors
Auditing Atlassian Plugins, 53 0-Days Later
Atlassian Confluence - Remote Code Execution (CVE-2023-22527)
CVE-2023-22524: RCE Vulnerability in Atlassian Companion for macOS
OAuth 2.0 Redirect URI Validation Falls Short, Literally
Phishing the anti-phishers: Exploiting anti-phishing tools for internal access
macOS Atlassian Companion Remote Code Execution
Bypassing OGNL sandboxes for fun and charities
CVE-2022–43781
Atlassian Jira Align, Version 10.107.4 Advisory
Breaking Bitbucket: Pre Auth Remote Command Execution (CVE-2022-36804)
Abusing functionality to exploit a super SSRF in Jira Server (CVE-2022-26135)
Hacking Swagger-UI - from XSS to account takeovers
CVE-2022-26133 - Bitbucket Data Center - Java Deserialization Vulnerability
How I Found My First XSS Bug
How I accidentally hacked many companies using N/A vulnerability in Atlassian Cloud
Write Up – XSS Stored In api.media.atlassian.com Via Doc File (iOS)
CVE-2021-26084
"A tale of making internet pollution free" - Exploiting Client-Side Prototype Pollution in the wild
A supply-chain breach: Taking over an Atlassian account
Leaking issues from linked Jira – Atlassian Confluence Server
CSRF Protection Bypass in Atlassian Confluence Server
id.atlassian.com Username enumeration
Exploiting Jira for Host Discovery
How I Made $600 in Bug Bounty in 15 Minutes with Contrast CE – CVE- 2019-8442
Analysis of CVE-2019-14994 – Jira Service Desk Path Traversal leads to Massive Information Disclosure