Known vulnerabilities in the Team plugin
6 security advisories have been published for the Team plugin. Each entry below states what an attacker can do, what privilege they need, and the version the issue was fixed in.
- Team - SQL Injection (CVE-2025-14124) HIGH
- Team - Cross-Site Scripting (XSS) (CVE-2024-9236) MEDIUM
- Team - Broken Access Control (CVE-2024-13439) MEDIUM
- Team - Path Traversal (CVE-2022-2557) HIGH
- Team - Cross-Site Scripting (XSS) (CVE-2022-34853) MEDIUM
- Team - Cross-Site Scripting (XSS) (CVE-2022-34650) MEDIUM