atlassian data-center CVE-2021-43946 vulnerability in Atlassian Products
Published on January 5, 2022

product logo product logo
Affected versions of Atlassian Jira Server and Data Center allow authenticated remote attackers to add administrator groups to filter subscriptions via a Broken Access Control vulnerability in the /secure/EditSubscription.jspa endpoint. The affected versions are before version 8.13.21, and from version 8.14.0 before 8.20.9.

NVD


Products Associated with CVE-2021-43946

You can be notified by email with stack.watch whenever vulnerabilities like CVE-2021-43946 are published in these products:

 
 

Affected Versions

Atlassian Jira Server: Atlassian Jira Data Center:

Exploit Probability

EPSS
0.29%
Percentile
51.65%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.