Netic's vulnerability footprint centers on a narrow set of administrative tools, including Group Export and User Export for Jira, which facilitate bulk user and group management operations. The observed weakness class involves missing authorization controls, reflecting risks endemic to data-export utilities where access restrictions may be incompletely enforced across exported datasets or operations.
The number and severity of CVEs published that impact products developed by Netic over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-39960MEDIUM The Netic Group Export add-on before 1.0.3 for Atlassian Jira does not perform authorization checks. This might allow an unauthenticated user to export all groups from the Jira ins | Sep 17, 2022 | 5.3 | 43 | NO | YES |
CVE-2022-38367MEDIUM The Netic User Export add-on before 2.0.6 for Atlassian Jira does not perform authorization checks. This might allow an unauthenticated user to export all users from Jira by making | Sep 5, 2022 | 5.3 | 20 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Netic.
Media articles that mention a CVE ID that affects a product developed by Netic — matched by CVE ID, not by vendor name.