Authorization Issue in Jira Align by Atlassian
CVE-2025-22175
5.3MEDIUM
What is CVE-2025-22175?
Jira Align has a vulnerability that allows low-privilege users to access unauthorized endpoints, potentially exposing sensitive information. This includes the ability to modify the steps of another user's private checklist, compromising user privacy and data integrity. Organizations using Jira Align should be aware of this risk and take steps to secure their environments.
Affected Version(s)
Jira Align >= 11.14.0 < 11.14.0
Jira Align >= 11.14.1 >= 11.14.1
Jira Align >= 11.15.0 >= 11.15.0