CVE-2019-11583

MEDIUM

Jira < 8.1.0 - Denial of Service via Epic Name Search Ordering

Title source: llm
STIX 2.1

Description

The issue searching component in Jira before version 8.1.0 allows remote attackers to deny access to Jira service via denial of service vulnerability in issue search when ordering by "Epic Name".

References (2)

Core 2
Core References
Issue Tracking, Vendor Advisory x_refsource_misc
https://jira.atlassian.com/browse/JSWSERVER-20111
Third Party Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/108901

Scores

CVSS v3 6.5
EPSS 0.0048
EPSS Percentile 65.2%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

Status published
Products (1)
atlassian/jira < 8.1.0
Published Jun 26, 2019
Tracked Since Feb 18, 2026