logo

Jira Security Vulnerability CVE-2019-11581 | UpGuard

ID: df2534d5-2036-5d78-9852-95cff4350db3

STIX ID: report--df2534d5-2036-5d78-9852-95cff4350db3

Feed Name: UpGuard Blog

Threat Score
70/100

Date Published: 2024-09-10

Date Updated: 2026-05-01

...
...

On 10 July 2019 Atlassian disclosed CVE-2019-11581, a critical template-injection vulnerability in Jira Server and Data Center introduced in 2011 and affecting many releases up to 8.2.2; UpGuard used Shodan data to find roughly 50,000 potential Jira instances and confirmed over 30,000 reachable instances with version numbers, the vast majority of which remained vulnerable. The report highlights global distribution (including .gov hosts), sparse adoption of patches or the recommended workaround (disabling the Contact Administrators form), and encourages organizations to check and remediate affected Jira Server/Data Center installations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.