Bamboo 2.2 before 5.8.5 and 5.9.x before 5.9.7 allows remote attackers with access to the Bamboo web interface to execute arbitrary Java code via an unspecified resource.
| Software | From | Fixed in |
|---|---|---|
| atlassian / bamboo | 2.2 | 5.8.5 |
| atlassian / bamboo | 5.9 | 5.9.7 |