Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
atlassian jira 3.13.2 vulnerabilities and exploits
(subscribe to this query)
383
VMScore
CVE-2010-1164
Multiple cross-site scripting (XSS) vulnerabilities in Atlassian JIRA 3.12 up to and including 4.1 allow remote malicious users to inject arbitrary web script or HTML via the (1) element or (2) defaultColor parameter to the Colour Picker page; the (3) formName parameter, (4) elem...
Atlassian Jira 3.13.1
Atlassian Jira 3.13.2
Atlassian Jira 3.12.3
Atlassian Jira 3.13
Atlassian Jira 4.0.2
Atlassian Jira 4.1
Atlassian Jira 3.12.1
Atlassian Jira 3.12.2
Atlassian Jira 4.0
Atlassian Jira 4.0.1
Atlassian Jira 3.12
Atlassian Jira 3.13.3
Atlassian Jira 3.13.4
Atlassian Jira 3.13.5
1 Github repository
801
VMScore
CVE-2010-1165
Atlassian JIRA 3.12 up to and including 4.1 allows remote authenticated administrators to execute arbitrary code by modifying the (1) attachment (aka attachments), (2) index (aka indexing), or (3) backup path and then uploading a file, as exploited in the wild in April 2010.
Atlassian Jira 3.12
Atlassian Jira 3.13.3
Atlassian Jira 3.13.1
Atlassian Jira 3.13.2
Atlassian Jira 4.1
Atlassian Jira 3.12.3
Atlassian Jira 3.13
Atlassian Jira 4.0.1
Atlassian Jira 4.0.2
Atlassian Jira 3.13.4
Atlassian Jira 3.12.1
Atlassian Jira 3.12.2
Atlassian Jira 3.13.5
Atlassian Jira 4.0
605
VMScore
CVE-2008-6531
The WebWork 1 web application framework in Atlassian JIRA prior to 3.13.2 allows remote malicious users to invoke exposed public JIRA methods via a crafted URL that is dynamically transformed into method calls, aka "WebWork 1 Parameter Injection Hole."
Atlassian Jira
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-3661
open redirect
CVE-2024-25512
CVE-2024-33788
command injection
SSTI
CVE-2024-0043
CVE-2024-29210
CVE-2024-25510
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started