CVE Published: 10/08/2022 |
CVE Updated: 29/10/2024 |
CVE Year: 2022 Source: atlassian |
Vendor: Atlassian |
Product: Jira Server Status : PUBLISHED
CVE-2022-36801 Description
Affected versions of Atlassian Jira Server and Data Center allow anonymous remote attackers to inject arbitrary HTML or JavaScript via a Reflected Cross-Site Scripting (RXSS) vulnerability in the TeamManagement.jspa endpoint. The affected versions are before version 8.20.8.