Bamboo Mcr maintains a focused product line centered on Bamboo Columns, a web-facing application component with an observed vulnerability pattern concentrated in cross-site scripting and related input-handling weaknesses. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Bamboo Mcr over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-44143MEDIUM Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Bamboo Mcr Bamboo Columns allows Stored XSS.This issue affects Bamboo Columns: | Nov 30, 2023 | 5.4 | 17 | NO | NO |
CVE-2023-47812MEDIUM Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Bamboo Mcr Bamboo Columns plugin <= 1.6.1 versions. | Nov 22, 2023 | 5.4 | 16 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Bamboo Mcr.
Media articles that mention a CVE ID that affects a product developed by Bamboo Mcr — matched by CVE ID, not by vendor name.