-
Bug
-
Resolution: Fixed
-
High
-
None
We have identified and fixed a code injection vulnerability in Bamboo caused by an underlying vulnerability in the third-party Webwork 2 framework.
All versions of Bamboo from 3.0 up are affected.
This issue is reported in our security advisory on this page:
http://confluence.atlassian.com/x/MgFTE
This vulnerability is a variant of a recently disclosed Struts2 vulnerability.