Webwork 2 vulnerability

XMLWordPrintable

      We have identified and fixed a code injection vulnerability in FishEye and Crucible caused by an underlying vulnerability in the third-party Webwork 2 framework.

      All versions of FishEye/Crucible from 2.0 up are affected.

      This issue is reported in our security advisories on these pages:
      FishEye
      Crucible

      This vulnerability is a variant of a recently disclosed Struts2 vulnerability

              Assignee:
              VitalyA
              Reporter:
              paulwatson (Inactive)
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

                Created:
                Updated:
                Resolved: