CVE-2017-18103: Atlassian HTTP Library
Medium severity, CVSS 4.7. EPSS: 0.8% chance of exploitation in the next 30 days.
The atlassian-http library, as used in various Atlassian products, before version 2.0.2 allows remote attackers to spoof web content in the Mozilla Firefox Browser through uploaded files that have a content-type of application/mathml+xml.
Affected products
- Atlassian HTTP Library: before 2.0.2 (fixed in 2.0.2)
Published 2018-07-18. Last modified 2026-06-17.