Server-Side Request Forgery Vulnerability in Atlassian Jira Service Management
CVE-2021-43959
Key Information:
- Vendor
Atlassian
- Vendor
- CVE Published:
- 26 July 2022
What is CVE-2021-43959?
A security issue in Atlassian Jira Service Management Server and Data Center's CSV importing feature permits authenticated remote attackers to exploit a Server-Side Request Forgery (SSRF) vulnerability. This flaw can allow unauthorized access to sensitive internal network resources. In particular setups, such as those hosted on Amazon EC2, attackers could leverage this vulnerability to gain access to critical metadata, potentially exposing sensitive credentials and confidential information.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Jira Service Management Data Center < 4.13.20
Jira Service Management Data Center 4.14.0
Jira Service Management Data Center < 4.20.8
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved