High severity7.5NVD Advisory· Published Aug 24, 2017· Updated May 13, 2026
CVE-2017-9512
CVE-2017-9512
Description
The mostActiveCommitters.do resource in Atlassian Fisheye and Crucible, before version 4.4.1 allows anonymous remote attackers to access sensitive information, for example email addresses of committers, as it lacked permission checks.
Affected products
3- Atlassian/Atlassian Fisheye and Cruciblev5Range: All versions prior to version 4.4.1
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- jira.atlassian.com/browse/CRUC-8053nvdVendor Advisory
- jira.atlassian.com/browse/FE-6892nvdVendor Advisory
News mentions
0No linked articles in our index yet.