Atlassian Jira Data Center vulnerabilities
102 known vulnerabilities affecting atlassian/jira_data_center.
Total CVEs
102
CISA KEV
1
actively exploited
Public exploits
7
Exploited in wild
3
Severity breakdown
CRITICAL3HIGH21MEDIUM76LOW2
Vulnerabilities
Page 6 of 6
CVE-2021-26076P4LOWCVSS 3.7≥ 8.6.0, < 8.13.4≥ 8.14.0, < 8.15.1+5 more2021-04-15
CVE-2021-26076 [LOW] CVE-2021-26076: The jira.editor.user.mode cookie set by the Jira Editor Plugin in Jira Server and Data Center before
The jira.editor.user.mode cookie set by the Jira Editor Plugin in Jira Server and Data Center before version 8.5.12, from version 8.6.0 before version 8.13.4, and from version 8.14.0 before version 8.15.0 allows remote anonymous attackers who can perform an attacker in the middle attack to learn which mode a user is editing in due to the cookie not being set w
nvd
CVE-2021-26071P4LOWCVSS 3.5≥ 8.6.0, < 8.13.5≥ 8.14.0, < 8.15.1+5 more2021-04-01
CVE-2021-26071 [LOW] CWE-352 CVE-2021-26071: The SetFeatureEnabled.jspa resource in Jira Server and Data Center before version 8.5.13, from versi
The SetFeatureEnabled.jspa resource in Jira Server and Data Center before version 8.5.13, from version 8.6.0 before version 8.13.5, and from version 8.14.0 before version 8.15.1 allows remote anonymous attackers to enable and disable Jira Software configuration via a cross-site request forgery (CSRF) vulnerability.
nvd
← Previous6 / 6