5.3
CVSSv3

CVE-2021-39122

Published: 08/09/2021 Updated: 21/11/2024

Vulnerability Summary

Affected versions of Atlassian Jira Server and Data Center allow anonymous remote malicious users to view users' emails via an Information Disclosure vulnerability in the /rest/api/2/search endpoint. The affected versions are before version 8.5.13, from version 8.6.0 prior to 8.13.5, and from version 8.14.0 prior to 8.15.1.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

atlassian data center

atlassian jira

atlassian jira data center

atlassian jira server