Description
The wikirenderer component in Jira before version 7.13.6, and from version 8.0.0 before version 8.3.2 allows remote attackers to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability in image attribute specification.
Remediation
References
Related Vulnerabilities
Drupal Core 8.x.x Remote Code Execution (8.0.0 - 8.3.8)
WordPress Plugin Themify Portfolio Post Cross-Site Scripting (1.2.0)
MySQL CVE-2016-5627 Vulnerability (CVE-2016-5627)
Oracle Application Server CVE-2008-2593 Vulnerability (CVE-2008-2593)
WordPress Plugin RestroPress-Online Food Ordering System Security Bypass (2.8.3)