CVE-2018-5230
- EPSS 24.98%
- Veröffentlicht 14.05.2018 13:29:03
- Zuletzt bearbeitet 21.11.2024 04:08:23
The issue collector in Atlassian Jira before version 7.6.6, from version 7.7.0 before version 7.7.4, from version 7.8.0 before version 7.8.4 and from version 7.9.0 before version 7.9.2 allows remote attackers to inject arbitrary HTML or JavaScript vi...
CVE-2017-18102
- EPSS 0.31%
- Veröffentlicht 17.04.2018 13:29:00
- Zuletzt bearbeitet 21.11.2024 03:19:21
The wiki markup component of atlassian-renderer from version 8.0.0 before version 8.0.22 allows remote attackers to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability in nested wiki markup.
CVE-2017-18101
- EPSS 0.38%
- Veröffentlicht 10.04.2018 13:29:00
- Zuletzt bearbeitet 21.11.2024 03:19:21
Various administrative external system import resources in Atlassian JIRA Server (including JIRA Core) before version 7.6.5, from version 7.7.0 before version 7.7.3, from version 7.8.0 before version 7.8.3 and before version 7.9.0 allow remote attack...
CVE-2017-14594
- EPSS 0.23%
- Veröffentlicht 12.01.2018 14:29:00
- Zuletzt bearbeitet 21.11.2024 03:13:10
The printable searchrequest issue resource in Atlassian Jira before version 7.2.12 and from version 7.3.0 before 7.6.1 allows remote attackers to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability in the jqlQuery query...
CVE-2015-8481
- EPSS 0.21%
- Veröffentlicht 08.01.2016 19:59:13
- Zuletzt bearbeitet 12.04.2025 10:46:40
Atlassian JIRA Software 7.0.3, JIRA Core 7.0.3, and the bundled JIRA Service Desk 3.0.3 installer attaches the wrong image to e-mail notifications when a user views an issue with inline wiki markup referencing an image attachment, which might allow r...