Atlassian Jira Core Data Center vulnerabilities

3 known vulnerabilities affecting atlassian/jira_core_data_center.

Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH1MEDIUM1

Vulnerabilities

Page 1 of 1
CVE-2025-22157HIGHCVSS 7.2v10.5.0v10.4.0 to 10.4.1+2 more2025-05-20
CVE-2025-22157 [HIGH] CWE-284 CVE-2025-22157: This High severity PrivEsc (Privilege Escalation) vulnerability was introduced in versions: 9.12.0, This High severity PrivEsc (Privilege Escalation) vulnerability was introduced in versions: 9.12.0, 10.3.0, 10.4.0, and 10.5.0 of Jira Core Data Center and Server 5.12.0, 10.3.0, 10.4.0, and 10.5.0 of Jira Service Management Data Center and Server This PrivEsc (Privilege Escalation) vulnerability, with a CVSS Score of 7.2, allows an attacker to per
cvelistv5nvd
CVE-2024-21685MEDIUMCVSS 6.5v9.12.0 to 9.12.7v9.4.0 to 9.4.202024-06-18
CVE-2024-21685 [MEDIUM] CWE-200 CVE-2024-21685: This High severity Information Disclosure vulnerability was introduced in versions 9.4.0, 9.12.0, an This High severity Information Disclosure vulnerability was introduced in versions 9.4.0, 9.12.0, and 9.15.0 of Jira Core Data Center. This Information Disclosure vulnerability, with a CVSS Score of 7.4, allows an unauthenticated attacker to view sensitive information via an Information Disclosure vulnerability which has high impact to confidential
cvelistv5nvd
CVE-2020-36239CRITICALCVSS 9.8≥ 6.3.0, < unspecified≥ unspecified, < 8.5.16+4 more2021-07-29
CVE-2020-36239 [CRITICAL] CWE-862 CVE-2020-36239: Jira Data Center, Jira Core Data Center, Jira Software Data Center from version 6.3.0 before 8.5.16, Jira Data Center, Jira Core Data Center, Jira Software Data Center from version 6.3.0 before 8.5.16, from 8.6.0 before 8.13.8, from 8.14.0 before 8.17.0 and Jira Service Management Data Center from version 2.0.2 before 4.5.16, from version 4.6.0 before 4.13.8, and from version 4.14.0 before 4.17.0 exposed a Ehcache RMI network service which attack
cvelistv5nvd