CVE-2021-43951: Infoleak
Affected versions of Atlassian Jira Service Management Server and Data Center allow authenticated remote attackers to view object import configuration details via an Information Disclosure vulnerability in the Create Object type mapping feature. The affected versions are before version 4.21.0.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2021-43951.
What is the title of the vulnerability?
The title of the vulnerability is 'Affected versions of Atlassian Jira Service Management Server and Data Center allow authenticated remote attackers to view object import configuration details via an Information Disclosure vulnerability in the Create Object type mapping feature.'
Which versions of Atlassian Jira Service Management Server and Data Center are affected?
Versions before 4.21.0 of Atlassian Jira Service Management Server and Data Center are affected.
What is the severity of CVE-2021-43951?
The severity of CVE-2021-43951 is medium with a severity value of 4.3.
How can I fix CVE-2021-43951?
To fix CVE-2021-43951, you need to update your Atlassian Jira Service Management Server or Data Center to version 4.21.0 or newer.