Vulnerabilities > Atlassian > Jira Service Management > High

DATE CVE VULNERABILITY TITLE RISK
2022-07-20 CVE-2022-26137 Origin Validation Error vulnerability in Atlassian products
A vulnerability in multiple Atlassian products allows a remote, unauthenticated attacker to cause additional Servlet Filters to be invoked when the application processes requests or responses.
network
low complexity
atlassian CWE-346
8.8
2021-09-01 CVE-2021-39115 Code Injection vulnerability in Atlassian Jira Service Desk
Affected versions of Atlassian Jira Service Management Server and Data Center allow remote attackers with "Jira Administrators" access to execute arbitrary Java code or run arbitrary system commands via a Server_Side Template Injection vulnerability in the Email Template feature.
network
low complexity
atlassian CWE-94
7.2