Bugcrowd issues

Contract Signatures
Unauthorized Access gained from Jira Service Desk customer.account.session.token
Assignee:
Krzysztof Surdacki
Priority: Priority: Medium
Status:
Released
Polina Naumenko
bugcrowdsecurity_vulneribility
External Share for Jira
Unauthorized Modification of Board Card Settings
Assignee:
Igor Hercer
Priority: Priority: High
Status:
Released
Polina Naumenko
bugcrowdsecurity_vulneribility
External Share for Jira
Stored XSS in Project Field at Share Settings Panel
Assignee: Unassigned
Priority: Priority: Highest
Status:
Withdrawn
Polina Naumenko
XSSbugcrowdsecurity_vulneribility
Approval Path
Unauthorized edition of private space definitions
Assignee:
Kamil Zarychta
Priority: Priority: High
Status:
Released
Kamil Zarychta
bugcrowd
External Share for Confluence
VAPT Report for Warsaw Dynamics
Assignee:
Krzysztof Bogdan
Priority: Priority: Medium
Status:
Released
Krzysztof Bogdan
bugcrowd
External Share for Jira
TCP Port Enumeration Vulnerability in Custom Email feature of External Share Plugin for Jira Cloud
Assignee:
Mariusz Szymański
Priority: Priority: Medium
Status:
Released
Mariusz Szymański
bugcrowd
External Share for Jira
Reflected XSS in "Summary" Parameter on External Share Plugin for JIRA
Assignee:
Michał
Priority: Priority: High
Status:
Released
Michał
bugcrowd
External Share for Jira
Unauthorized Issue Description Modification via External Share Plugin for JIRA
Assignee:
Michał
Priority: Priority: Medium
Status:
Released
Michał
bugcrowd
Contract Signatures
Authentication Bypass using Jira Service Management
Assignee:
Krzysztof Surdacki
Priority: Priority: Highest
Status:
Done
Krzysztof Surdacki
bugcrowd
External Share for Confluence
[CSRF][Secuirity] External share confluence leads to add comments arbitrarily behalf of the admin.
Assignee:
Kamil Zarychta
Priority: Priority: Medium
Status:
Done
Krzysztof Bogdan
bugcrowd
External Share for Confluence
[XSS][USERNAME] - XSS issue occurs if filtering for a user with the "><img src=x onerror=alert(1)>"
Assignee:
Kamil Zarychta
Priority: Priority: Medium
Status:
Done
Parsa Shiva
bugcrowd
External Share for Jira
Add check csrf to forms
Assignee:
Krzysztof Bogdan
Priority: Priority: Medium
Status:
Done
Krzysztof Bogdan
bugcrowd
External Share for Confluence
Add csrf check to forms
Assignee:
Krzysztof Bogdan
Priority: Priority: Medium
Status:
Done
Krzysztof Bogdan
bugcrowd
Approval Path
Apply resource & rate limit for api
Assignee:
Krzysztof Bogdan
Priority: Priority: Medium
Status:
Done
Krzysztof Bogdan
bugcrowd
External Share for Jira
Apply resource & rate limit for api
Assignee:
Krzysztof Bogdan
Priority: Priority: Medium
Status:
Done
Krzysztof Bogdan
bugcrowd
External Share for Confluence
Apply resource & rate limit for api
Assignee:
Krzysztof Bogdan
Priority: Priority: Medium
Status:
Done
Krzysztof Bogdan
bugcrowd