CVE-2020-18684: Atlassian Floodlight

Critical severity, CVSS 9.8. EPSS: 1.3% chance of exploitation in the next 30 days.

Floodlight through 1.2 has an integer overflow in checkFlow in StaticFlowEntryPusherResource.java via priority or port number.

Affected products

  • Atlassian Floodlight: up to and including 1.2

Published 2021-09-30. Last modified 2026-06-17.