Uploaded image for project: 'Jira Data Center'
  1. Jira Data Center
  2. JRASERVER-72392

Vulnerability in Search Template Leads to Reflected XSS JIRA Software Server - CVE-2021-26078

    • 4.7
    • Medium
    • CVE-2021-26078

      Affected versions of Jira Server and Jira Data Center have a XSS vulnerability in the number range searcher component which allows remote attackers to inject arbitrary HTML or JavaScript.

      Affected versions:

      • versions < 8.5.14
      • 8.6.0 ≤ version <  8.13.6
      • 8.14.0 ≤ version < 8.16.1

      Fixed versions:

      • 8.5.14
      • 8.13.6
      • 8.16.1
      • 8.17.0

            [JRASERVER-72392] Vulnerability in Search Template Leads to Reflected XSS JIRA Software Server - CVE-2021-26078

            Security Metrics Bot made changes -
            CVE ID New: CVE-2021-26078
            AB made changes -
            Description Original: Affected versions of Jira Server and Jira Data Center have a XSS vulnerability in the number range searcher component which allows remote attackers to inject arbitrary HTML or JavaScript:

            _*Affected versions:*_
             * versions < 8.5.14
             * 8.6.0 ≤ version <  8.13.6
             * 8.14.0 ≤ version < 8.16.1

            _*Fixed versions:*_
             * 8.5.14
             * 8.13.6
             * 8.16.1
             * 8.17.0
            New: Affected versions of Jira Server and Jira Data Center have a XSS vulnerability in the number range searcher component which allows remote attackers to inject arbitrary HTML or JavaScript.

            _*Affected versions:*_
             * versions < 8.5.14
             * 8.6.0 ≤ version <  8.13.6
             * 8.14.0 ≤ version < 8.16.1

            _*Fixed versions:*_
             * 8.5.14
             * 8.13.6
             * 8.16.1
             * 8.17.0
            David Black made changes -
            Description Original: Affected versions of Jira Server and Jira Data Center have a XSS vulnerability in the number range searcher component:

            _*Affected versions:*_
             * versions < 8.5.14
             * 8.6.0 ≤ version <  8.13.6
             * 8.14.0 ≤ version < 8.16.1

            _*Fixed versions:*_
             * 8.5.14
             * 8.13.6
             * 8.16.1
             * 8.17.0
            New: Affected versions of Jira Server and Jira Data Center have a XSS vulnerability in the number range searcher component which allows remote attackers to inject arbitrary HTML or JavaScript:

            _*Affected versions:*_
             * versions < 8.5.14
             * 8.6.0 ≤ version <  8.13.6
             * 8.14.0 ≤ version < 8.16.1

            _*Fixed versions:*_
             * 8.5.14
             * 8.13.6
             * 8.16.1
             * 8.17.0
            David Black made changes -
            Description Original: Affected versions of Jira Server have a XSS vulnerability in the number range searcher component:

            _*Affected versions:*_
             * versions < 8.5.14
             * 8.6.0 ≤ version <  8.13.6
             * 8.14.0 ≤ version < 8.16.1

            _*Fixed versions:*_
             * 8.5.14
             * 8.13.6
             * 8.16.1
             * 8.17.0
            New: Affected versions of Jira Server and Jira Data Center have a XSS vulnerability in the number range searcher component:

            _*Affected versions:*_
             * versions < 8.5.14
             * 8.6.0 ≤ version <  8.13.6
             * 8.14.0 ≤ version < 8.16.1

            _*Fixed versions:*_
             * 8.5.14
             * 8.13.6
             * 8.16.1
             * 8.17.0

            Hey Oli, 

            This security issue has been patched and rolled out in the `Fix Versions` mentioned in the ticket. 

            The issue has been mitigated.

            Thanks,

            Prerana

            Prerana Shenoy added a comment - Hey Oli,  This security issue has been patched and rolled out in the `Fix Versions` mentioned in the ticket.  The issue has been mitigated. Thanks, Prerana

            Hey,

            In your Bugbounty program on Bugcrowd

            with this reference ID: 1286ca38c33de2fe058e9c357f5637778f85c1138853034796b14c3e636ba66d

            CaptainHook added a comment - Hey, In your Bugbounty program on Bugcrowd with this reference ID: 1286ca38c33de2fe058e9c357f5637778f85c1138853034796b14c3e636ba66d

            Hi,
            where can can I find detailed information about this possible security breach or how to check our system if it's relevant for us?

            Regards,
            Oli

            Oliver Liebing added a comment - Hi, where can can I find detailed information about this possible security breach or how to check our system if it's relevant for us? Regards, Oli

            Yes, CVE-2021-26078 is now filed for this issue.

            Prerana Shenoy added a comment - Yes, CVE-2021-26078 is now filed for this issue.

            Hi Did you file **

            CaptainHook added a comment - Hi Did you file ** CVE-2021-26078 for this issue?
            David Black made changes -
            Labels Original: advisory advisory-released dont-import security New: CVE-2021-26078 advisory advisory-released dont-import security

              Unassigned Unassigned
              security-metrics-bot Security Metrics Bot
              Votes:
              0 Vote for this issue
              Watchers:
              8 Start watching this issue

                Created:
                Updated:
                Resolved: