QID 10083
Date Published: 2021-04-01
QID 10083: Atlassian Jira Cross-Site Scripting Vulnerability(JRASERVER-72052)
Jira is a proprietary issue tracking product, developed by Atlassian. It provides bug tracking, issue tracking, and project management functions.
Affected version:
Atlassian Jira before version 8.15.0
QID Detection Logic:(Unauthenticated)
It checks for vulnerable version of Atlassian Jira.
These allow an unauthenticated attacker to inject Javascript into the application via Cross-Site Scripting (XSS) vulnerabilities.
Solution
Customers are advised to refer to JRASERVER-72052 for updates pertaining to this vulnerability.
Vendor References
- JRASERVER-72052 -
jira.atlassian.com/browse/JRASERVER-72052
CVEs related to QID 10083
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| JRASERVER-72052 |
|