Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
atlassian jira 3.13.2 vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2010-1164
Multiple cross-site scripting (XSS) vulnerabilities in Atlassian JIRA 3.12 up to and including 4.1 allow remote malicious users to inject arbitrary web script or HTML via the (1) element or (2) defaultColor parameter to the Colour Picker page; the (3) formName parameter, (4) elem...
Atlassian Jira 3.12
Atlassian Jira 3.12.1
Atlassian Jira 3.12.2
Atlassian Jira 3.12.3
Atlassian Jira 3.13
Atlassian Jira 3.13.1
Atlassian Jira 3.13.2
Atlassian Jira 3.13.3
Atlassian Jira 3.13.4
Atlassian Jira 3.13.5
Atlassian Jira 4.0
Atlassian Jira 4.0.1
1 Github repository
9
CVSSv2
CVE-2010-1165
Atlassian JIRA 3.12 up to and including 4.1 allows remote authenticated administrators to execute arbitrary code by modifying the (1) attachment (aka attachments), (2) index (aka indexing), or (3) backup path and then uploading a file, as exploited in the wild in April 2010.
Atlassian Jira 3.12
Atlassian Jira 3.12.1
Atlassian Jira 3.12.2
Atlassian Jira 3.12.3
Atlassian Jira 3.13
Atlassian Jira 3.13.1
Atlassian Jira 3.13.2
Atlassian Jira 3.13.3
Atlassian Jira 3.13.4
Atlassian Jira 3.13.5
Atlassian Jira 4.0
Atlassian Jira 4.0.1
6.8
CVSSv2
CVE-2008-6531
The WebWork 1 web application framework in Atlassian JIRA prior to 3.13.2 allows remote malicious users to invoke exposed public JIRA methods via a crafted URL that is dynamically transformed into method calls, aka "WebWork 1 Parameter Injection Hole."
Atlassian Jira
Preferred Score:
CVSSv3
CVSSv2
CVSSv3
CVSSv4
EPSS
VMScore
Recommendations:
ssl.com
CVE-2025-3278
CVE-2025-24054
brute force
firewall
privilege escalation
CVE-2025-24914
qriouslad
CVE-2025-42599
pritunl
namelessmc
CVE-2025-3103
CVE-2025-43895
Home
/
Search Results
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started