cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2022-26138,https://securityvulnerability.io/vulnerability/CVE-2022-26138,Vulnerability in Atlassian Questions For Confluence App for Confluence Server and Data Center,"The Atlassian Questions For Confluence app vulnerabilities allow the creation of a user account named 'disabledsystemuser' with a hardcoded password upon installation of specific app versions. An unauthenticated attacker who is aware of this password can exploit this flaw to gain unauthorized access to Confluence, potentially leading to unauthorized viewing of all content available to users in the confluence-users group. This issue poses a significant risk to the security and integrity of user data in Confluence environments.",Atlassian,Questions For Confluence,9.8,CRITICAL,0.9681500196456909,true,2022-07-29T00:00:00.000Z,false,false,true,2022-07-29T00:00:00.000Z,true,false,false,,2022-07-20T00:00:00.000Z,0 CVE-2018-13394,https://securityvulnerability.io/vulnerability/CVE-2018-13394,,"The acceptAnswer resource in Atlassian Confluence Questions before version 2.6.6, the bundled version of Confluence Questions was updated to a fixed version in Confluence version 6.9.0, allows remote attackers to modify a comment into an answer via a Cross-site request forgery (CSRF) vulnerability.",Atlassian,Confluence Questions,6.5,MEDIUM,0.0007800000021234155,false,,false,false,false,,,false,false,,2018-08-15T00:00:00.000Z,0 CVE-2018-13393,https://securityvulnerability.io/vulnerability/CVE-2018-13393,,"The convertCommentToAnswer resource in Atlassian Confluence Questions before version 2.6.6, the bundled version of Confluence Questions was updated to a fixed version in Confluence version 6.9.0, allows remote attackers to modify a comment into an answer via a Cross-site request forgery (CSRF) vulnerability.",Atlassian,Confluence Questions,6.5,MEDIUM,0.0006699999794363976,false,,false,false,false,,,false,false,,2018-08-15T00:00:00.000Z,0