Atlassian Updates
2423Warning Date
Severity Level
Warning Number
Target Sector
22 July, 2021
● Critical
2021-3233
All
Description:
Atlassian has released security updates to address a vulnerability in the following products:
- Jira Data Center, Jira Core Data Center, and Jira Software Data Center
- All 6.3.x, 6.4.x versions
- All 7.0.x, 7.1.x , 7.2.x, 7.3.x, 7.4.x, 7.5.x, 7.6.x, 7.7.x, 7.8.x, 7.9.x, 7.10.x, 7.11.x, 7.12.x, 7.13.x versions
- All 8.0.x, 8.1.x, 8.2.x, 8.3.x, 8.4.x versions
- All 8.5.x versions before 8.5.16
- All 8.6.x, 8.7.x, 8.8.x, 8.9.x, 8.10.x, 8.11.x, 8.12.x versions
- All 8.13.x versions before 8.13.8
- All 8.14.x, 8.15.x, 8.16.x versions
- Jira Service Management Data Center
- All 2.x.x versions after 2.0.2
- All 3.x.x versions
- All 4.0.x, 4.1.x, 4.2.x, 4.3.x, 4.4.x versions
- All 4.5.x versions before 4.5.16
- All 4.6.x, 4.7.x, 4.8.x, 4.9.x, 4.10.x, 4.11.x, 4.12.x versions
- All 4.13.x versions before 4.13.8
- All 4.14.x, 4.15.x, 4.16.x versions
Threats:
Attacker could exploit this vulnerability by executing arbitrary code.
Best practice and Recommendations:
The CERT team encourages users to review Atlassian security advisory and apply the necessary updates: