Auditing Atlassian Plugins, 53 0-Days Later |
|
|
|
Atlassian Confluence - Remote Code Execution (CVE-2023-22527) |
|
|
|
CVE-2023-22524: RCE Vulnerability in Atlassian Companion for macOS |
|
|
|
OAuth 2.0 Redirect URI Validation Falls Short, Literally |
|
|
|
Phishing the anti-phishers: Exploiting anti-phishing tools for internal access |
|
|
|
macOS Atlassian Companion Remote Code Execution |
|
|
|
Bypassing OGNL sandboxes for fun and charities |
|
|
|
CVE-2022–43781 |
|
|
|
Atlassian Jira Align, Version 10.107.4 Advisory |
|
|
|
Breaking Bitbucket: Pre Auth Remote Command Execution (CVE-2022-36804) |
|
|
|
Abusing functionality to exploit a super SSRF in Jira Server (CVE-2022-26135) |
|
|
|
Hacking Swagger-UI - from XSS to account takeovers |
|
|
|
CVE-2022-26133 - Bitbucket Data Center - Java Deserialization Vulnerability |
|
|
|
How I Found My First XSS Bug |
|
|
|
How I accidentally hacked many companies using N/A vulnerability in Atlassian Cloud |
|
|
|
Write Up – XSS Stored In api.media.atlassian.com Via Doc File (iOS) |
|
|
|
CVE-2021-26084 |
|
|
|
"A tale of making internet pollution free" - Exploiting Client-Side Prototype Pollution in the wild |
|
|
|
A supply-chain breach: Taking over an Atlassian account |
|
|
|
Leaking issues from linked Jira – Atlassian Confluence Server |
|
|
|
CSRF Protection Bypass in Atlassian Confluence Server |
|
|
|
id.atlassian.com Username enumeration |
|
|
|
Exploiting Jira for Host Discovery |
|
|
|
How I Made $600 in Bug Bounty in 15 Minutes with Contrast CE – CVE- 2019-8442 |
|
|
|
Analysis of CVE-2019-14994 – Jira Service Desk Path Traversal leads to Massive Information Disclosure |
|
|
|