Known vulnerabilities in Jira Software Data Center - page 6

Vendor: Atlassian
Software CPE: cpe:2.3:a:atlassian:jira_data_center:*:*:*:*:*:*:*:*
Total vulnerabilities: 152
Public exploits: 27
Known exploited (KEV): 3
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Jira Software Data Center Jira Software Data Center is affected by 152 known vulnerabilities: 3 critical, 16 high, 117 medium, 16 low Critical High Medium Low

Vulnerabilities (152)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU98024 - Improper input validation
CVE-2024-47561
CWE-20 High
No
No
9.12.15, 9.17.5, 10.3.1 03.10.2024 SB2024100351
SB2024100504
SB2024100984
and 36 more
#VU97758 - Improperly Controlled Modification of Object Prototype Attributes (\'Prototype Pollution\')
CVE-2024-45801
CWE-1321 Medium
No
No
9.4.28, 9.12.15, 9.17.4, 10.1.1, 10.3.16, 11.3.0 27.09.2024 SB2024092751
SB2024100823
SB2024100827
and 32 more
#VU93732 - Resource Management Errors
CVE-2024-34750
CWE-399 Medium
No
No
9.4.25, 9.12.12, 9.17.1 03.07.2024 SB2024070346
SB20240711245
SB2024071542
and 56 more
#VU92227 - Exposure of sensitive information to an unauthorized actor
CVE-2024-21685
CWE-200 Medium
No
No
9.4.21, 9.12.8, 9.16.0 18.06.2024 SB20240618114
SB20240618115
#VU87607 - Improper Access Control
CVE-2024-22257
CWE-284 Medium
No
No
9.4.20, 9.12.7, 9.15.2 19.03.2024 SB2024031915
SB2024041659
SB2024041660
and 26 more
#VU87509 - Resource exhaustion
CVE-2024-23672
CWE-400 Medium
No
No
9.4.19, 9.12.6, 9.15.2 13.03.2024 SB2024031386
SB2024032821
SB2024032824
and 49 more
#VU86992 - Allocation of Resources Without Limits or Throttling
CVE-2024-21634
CWE-770 Medium
No
No
9.4.18, 9.12.6, 9.15.0 04.03.2024 SB2024030419
SB2024031125
SB2024032143
and 18 more
#VU86983 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2024-1597
CWE-89 High
No
No
9.4.19, 9.12.6, 9.15.2 04.03.2024 SB2024030405
SB2024030406
SB2024030427
and 47 more
#VU82454 - Allocation of Resources Without Limits or Throttling
CVE-2023-43642
CWE-770 Medium
No
No
9.4.16, 9.12.3 26.10.2023 SB2023102621
SB2023102628
SB2023103020
and 63 more
#VU82276 - Allocation of Resources Without Limits or Throttling
CVE-2023-5072
CWE-770 Medium
No
No
9.4.16, 9.12.1 20.10.2023 SB2023102017
SB2023102018
SB2023113056
and 97 more
#VU77362 - Resource exhaustion
CVE-2023-34455
CWE-400 Medium
No
No
9.4.16, 9.12.3 15.06.2023 SB2023061517
SB2023071708
SB2023072511
and 48 more
#VU77361 - Integer overflow
CVE-2023-34454
CWE-190 Medium
No
No
9.4.16, 9.12.3 15.06.2023 SB2023061517
SB2023071708
SB2023072511
and 39 more
#VU77359 - Integer overflow
CVE-2023-34453
CWE-190 Medium
No
No
9.4.16, 9.12.3 15.06.2023 SB2023061517
SB2023071708
SB2023072511
and 40 more
#VU77102 - Stack-based buffer overflow
CVE-2022-45688
CWE-121 Medium
No
No
9.4.16, 9.10.0 08.06.2023 SB2023060836
SB2023060927
SB2023071959
and 35 more
#VU75044 - Uncontrolled Recursion
CVE-2023-1370
CWE-674 Medium
No
No
9.4.18, 9.12.6, 9.12.34, 9.13.0, 10.3.17, 11.3.3 12.04.2023 SB2023041258
SB2023041259
SB2023041809
and 130 more
#VU70527 - Improper input validation
CVE-2022-41966
CWE-20 Medium
Available
No
9.4.18, 9.7.2, 9.8.0 28.12.2022 SB2022122822
SB2023011211
SB2023020616
and 53 more
#VU69673 - Out-of-bounds write
CVE-2022-40149
CWE-787 Medium
No
No
9.4.16, 9.9.0 29.11.2022 SB2022112909
SB2022112941
SB2022121101
and 41 more
#VU69670 - Improper input validation
CVE-2022-3509
CWE-20 Medium
No
No
9.4.16, 9.6.0 29.11.2022 SB2022111433
SB2022112934
SB2023011787
and 58 more
#VU69293 - Improper input validation
CVE-2022-3171
CWE-20 Medium
No
No
9.4.16, 9.6.0 14.11.2022 SB2022111433
SB2022111440
SB2022112934
and 105 more
#VU68859 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2022-42252
CWE-444 Medium
No
No
9.4.12 31.10.2022 SB2022103146
SB2022112324
SB2022112533
and 43 more


Showing elements 101 - 120 out of 152