Medium severity5.4NVD Advisory· Published Jun 1, 2020· Updated Jun 17, 2026
CVE-2020-4021
CVE-2020-4021
Description
Affected versions are: Before 8.5.5, and from 8.6.0 before 8.8.1 of Atlassian Jira Server and Data Center allow remote attackers to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability in the XML export view.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6- cpe:2.3:a:atlassian:jira_software_data_center:*:*:*:*:*:*:*:*Range: <7.13.16
<8.5.5, >=8.6.0 <8.8.1+ 1 more
- (no CPE)range: <8.5.5, >=8.6.0 <8.8.1
- (no CPE)range: unspecified
Patches
Vulnerability mechanics
References
1- jira.atlassian.com/browse/JRASERVER-70923nvdIssue TrackingVendor Advisory
News mentions
0No linked articles in our index yet.