Known Vulnerabilities for Jira by Atlassian
Listed below are 10 of the newest known vulnerabilities associated with "Jira" by "Atlassian".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-73498 json | MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, conflue... | Not Provided | 2026-08-12 | 2026-08-13 |
| CVE-2026-73497 json | MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). From 0.17.0 until 0.22.0... | Not Provided | 2026-09-14 | 2026-09-15 |
| CVE-2026-73496 json | MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, the con... | Not Provided | 2026-09-14 | 2026-09-16 |
| CVE-2026-66908 json | Improper Authentication vulnerability in Apache Camel Platform HTTP Main component. This issue affects Apache Camel: from ... | Not Provided | 2026-08-24 | 2026-08-25 |
| CVE-2026-48206 json | Improper Input Validation, Authorization Bypass Through User-Controlled Key vulnerability in Apache Camel JIRA component. Th... | Not Provided | 2026-07-06 | 2026-07-06 |
| CVE-2026-40858 json | The camel-infinispan component's ProtoStream-based remote aggregation repository deserializes data read from a remote Infinis... | Not Provided | 2026-04-27 | 2026-09-09 |
| CVE-2026-21587 json | This High severity Improper Authorization vulnerability was introduced in version 11.3.0 of Jira Service Management Data Cent... | Not Provided | 2026-09-15 | 2026-09-16 |
| CVE-2026-19369 json | A vulnerability was found in KS-GEN-AI jira-mcp-server 0.2.0. This affects the function axios.get of the file src/index.ts of... | Not Provided | 2026-08-09 | 2026-08-10 |
| CVE-2026-12225 json | syracom AG Secure Login (2FA) for Atlassian Jira, Confluence, and Bitbucket 3.4.0.x contains an authentication bypass vulnera... | Not Provided | 2026-06-16 | 2026-06-21 |
| CVE-2026-6673 json | Mattermost versions 11.7.x <= 11.7.0, 11.6.x <= 11.6.2, 11.5.x <= 11.5.5, 10.11.x <= 10.11.17 fail to authenticate Atlassian ... | Not Provided | 2026-06-22 | 2026-06-22 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Atlassian | Jira | 8.9.2 | |||
| Application | Atlassian | Jira | 8.9.1 | |||
| Application | Atlassian | Jira | 8.9.0 | |||
| Application | Atlassian | Jira | 8.8.2 | |||
| Application | Atlassian | Jira | 8.8.1 | |||
| Application | Atlassian | Jira | 8.8.0 | |||
| Application | Atlassian | Jira | 8.7.2 | |||
| Application | Atlassian | Jira | 8.7.1 | |||
| Application | Atlassian | Jira | 8.7.0 | |||
| Application | Atlassian | Jira | 8.6.2 | |||
| Application | Atlassian | Jira | 8.6.1 | |||
| Application | Atlassian | Jira | 8.6.0 | |||
| Application | Atlassian | Jira | 8.5.9 | |||
| Application | Atlassian | Jira | 8.5.8 | |||
| Application | Atlassian | Jira | 8.5.7 | |||
| Application | Atlassian | Jira | 8.5.6 | |||
| Application | Atlassian | Jira | 8.5.5 | |||
| Application | Atlassian | Jira | 8.5.4 | |||
| Application | Atlassian | Jira | 8.5.3 | |||
| Application | Atlassian | Jira | 8.5.2 |