CVE-2017-8080: Atlassian Hipchat Server

High severity, CVSS 8.8. EPSS: 2.6% chance of exploitation in the next 30 days.

Atlassian Hipchat Server before 2.2.4 allows remote authenticated users with user level privileges to execute arbitrary code via vectors involving image uploads.

Affected products

  • Atlassian Hipchat Server: up to and including 2.2.3

Published 2017-05-05. Last modified 2026-06-17.