CVE List

CVE-2022-36801

Moderate 6.1

Affected versions of Atlassian Jira Server and Data Center allow anonymous remote attackers to inject arbitrary HTML or JavaScript via a Reflected Cross-Site Scripting (RXSS) vulnerability in the TeamManagement.jspa endpoint. The affected versions are before version 8.20.8.

Published August 10, 2022.

Affected software

Get alerts for Atlassian Jira Server

Reference links