Lucene search

K
atlassianDblackATLASSIAN:CRUC-8412
HistoryJul 09, 2019 - 2:47 a.m.

Update Application links to ensure that a version of jackson-databind containing a fix for CVE-2018-14721 is used

2019-07-0902:47:04
dblack
jira.atlassian.com
19

0.013 Low

EPSS

Percentile

85.6%

The version of the Atlassian Application links plugin used in Crucible before version 4.7.1 contained a version of jackson-databind that was vulnerable to CVE-2018-14721.

CPENameOperatorVersion
cruciblelt4.7.1
cruciblelt4.8.0
cruciblele4.7.0