QID 730440

Date Published: 2022-04-14

QID 730440: Atlassian Jira Server Information Disclosure Vulnerability (JRASERVER-70409)

Jira is a proprietary issue tracking product, developed by Atlassian. It provides bug tracking, issue tracking, and project management functions.



Affected version: before version 5.0.12
from version 5.1.0 before version 5.2.11
from version 5.3.0 before version 5.3.7
from version 5.4.0 before 5.4.13
from version 6.0.0 before 6.0.5


QID Detection Logic:(Unauthenticated)
It checks for vulnerable version of Atlassian Jira.

Successful exploitation of this vulnerability could lead to a security breach or could affect confidentiality, integrity, and availability.

  • CVSS V3 rated as Medium - 4.3 severity.
  • CVSS V2 rated as Medium - 4 severity.
  • Solution
    Customers are advised to refer to JRASERVER-70409 for updates pertaining to this vulnerability.
    Vendor References

    CVEs related to QID 730440

    Software Advisories
    Advisory ID Software Component Link
    JRASERVER-70409 URL Logo jira.atlassian.com/browse/JRASERVER-70409