QID 730325
Date Published: 2022-01-06
QID 730325: Atlassian Jira Server and Data Center Reflected Cross-Site Scripting (XSS) Vulnerability (JRASERVER-73068)
Jira is a proprietary issue tracking product, developed by Atlassian. It provides bug tracking, issue tracking, and project management functions.
Affected version:
Atlassian Jira Server and Data Center version below 8.13.15
Atlassian Jira Server and Data Center version from 8.14.0 to 8.20.2
QID Detection Logic:(Unauthenticated)
It checks for vulnerable version of Atlassian Jira.
Successful exploitation of these vulnerabilities may allow remote attacker to impact the application's via Request Smuggling, Denial of service, Broken Authentication vulnerability.
Solution
Customers are advised to refer to JRASERVER-73068 for updates pertaining to this vulnerability.
Vendor References
- JRASERVER-73068 -
jira.atlassian.com/browse/JRASERVER-73068
CVEs related to QID 730325
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| JRASERVER-73068 |
|