Home
MEDIUM: 5.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N < 11.14.0
unaffected
>= 11.14.0
affected
>= 11.14.1
affected
>= 11.15.0
affected
>= 11.15.1
affected
>= 11.16.0
affected
>= 11.16.1
unaffected
Description
Jira Align is vulnerable to an authorization issue. A low-privilege user without sufficient privileges to perform an action could if they included a particular state-related parameter of a user with sufficient privileges to perform the action.
Problem types
Improper Authorization
Product status
>= 11.14.0
>= 11.14.1
>= 11.15.0
>= 11.15.1
>= 11.16.0
>= 11.16.1
Credits
Frank Lycops, NATO Cyber Security Centre
References
jira.atlassian.com/browse/JIRAALIGN-8639
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.