All 14 CVE vulnerabilities found in Crucible, with AI-generated Chinese analysis, references, and POCs.
This page documents software vulnerabilities associated with Atlassian’s Crucible, a code review and collaboration tool used primarily in enterprise software development environments. It aggregates known weaknesses, security flaws, and configuration errors identified in various versions of the product, focusing on issues that could allow unauthorized access, data exposure, or system compromise. The content covers vulnerability data ranging from early releases up to the most recent patches, ensuring a comprehensive historical perspective on the product’s security posture. Users can utilize this resource to track vendor advisories issued by Atlassian, analyze the evolution of specific weakness classes such as cross-site scripting or authentication bypasses within the Crucible ecosystem, and investigate the full vulnerability history of specific product versions. This aggregated view helps security teams prioritize remediation efforts by contextualizing individual flaws within the broader timeline of product development and maintenance. The page serves as a centralized reference for understanding how past security incidents have influenced current best practices for deploying and configuring Crucible securely. By reviewing these details, administrators can better assess their exposure risk and apply appropriate mitigations based on proven vendor recommendations and community-driven insights.
Vendor: Atlassian
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2020-29447 | Atlassian Crucible 代码问题漏洞 | 6.5 | - | 2020-12-21 |
| CVE-2020-4023 | Atlassian Fisheye和Crucible 跨站脚本漏洞 | 6.1 | - | 2020-06-01 |
| CVE-2020-4017 | Atlassian Fisheye和Crucible 信息泄露漏洞 | 5.3 | - | 2020-06-01 |
| CVE-2020-4018 | Atlassian Fisheye和Crucible 跨站请求伪造漏洞 | 8.8 | - | 2020-06-01 |
| CVE-2020-4015 | Atlassian Fisheye和Crucible 信息泄露漏洞 | 5.3 | - | 2020-06-01 |
| CVE-2020-4016 | Atlassian Fisheye和Crucible 信息泄露漏洞 | 5.3 | - | 2020-06-01 |
| CVE-2020-4013 | Atlassian Fisheye和Crucible 跨站脚本漏洞 | 5.4 | - | 2020-06-01 |
| CVE-2020-4014 | Atlassian Fisheye和Crucible 授权问题漏洞 | 5.3 | - | 2020-06-01 |
| CVE-2019-15007 | Atlassian Fisheye和Crucible 跨站脚本漏洞 | 5.4 | - | 2019-12-11 |
| CVE-2019-15008 | Atlassian Fisheye和Crucible 跨站脚本漏洞 | 6.1 | - | 2019-12-11 |
| CVE-2019-15009 | Atlassian Fisheye和Crucible 安全漏洞 | 4.3 | - | 2019-12-11 |
| CVE-2017-18092 | Atlassian Crucible 跨站脚本漏洞 | 5.4 | - | 2018-02-19 |
| CVE-2017-18095 | Atlassian Crucible 授权问题漏洞 CWE-863 | 6.5 | - | 2018-02-19 |
| CVE-2017-18089 | Atlassian Crucible 跨站脚本漏洞 | 5.4 | - | 2018-02-16 |
All 14 known CVE vulnerabilities affecting Crucible with full Chinese analysis, references, and POCs where available.