CVE-2020-18685: Atlassian Floodlight
Critical severity, CVSS 9.8. EPSS: 1.3% chance of exploitation in the next 30 days.
Floodlight through 1.2 has poor input validation in checkFlow in StaticFlowEntryPusherResource.java because of unchecked prerequisites related to TCP or UDP ports, or group or table IDs.
Affected products
- Atlassian Floodlight: up to and including 1.2
Published 2021-09-30. Last modified 2026-06-17.