CVE-2020-18683: Atlassian Floodlight

Critical severity, CVSS 9.8. EPSS: 1.3% chance of exploitation in the next 30 days.

Floodlight through 1.2 has poor input validation in checkFlow in StaticFlowEntryPusherResource.java because of undefined fields mishandling.

Affected products

  • Atlassian Floodlight: up to and including 1.2

Published 2021-09-30. Last modified 2026-06-17.