Medium severity4.8NVD Advisory· Published Aug 25, 2021· Updated Jun 17, 2026
CVE-2021-39112
CVE-2021-39112
Description
Affected versions of Atlassian Jira Server and Data Center allow remote attackers to redirect users to a malicious URL via a reverse tabnapping vulnerability in the Project Shortcuts feature. The affected versions are before version 8.5.15, from version 8.6.0 before 8.13.7, from version 8.14.0 before 8.17.1, and from version 8.18.0 before 8.18.1.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
8- Range: unspecified
- Range: <8.5.15, 8.6.0-<8.13.7, 8.14.0-<8.17.1, 8.18.0-<8.18.1
unspecified+ 1 more
- (no CPE)range: unspecified
- cpe:2.3:a:atlassian:jira_server:*:*:*:*:*:*:*:*range: >=8.6.0,<8.13.7
- cpe:2.3:a:atlassian:jira_data_center:*:*:*:*:*:*:*:*Range: >=8.6.0,<8.13.7
Patches
Vulnerability mechanics
References
1- jira.atlassian.com/browse/JRASERVER-72433nvdPatchVendor Advisory
News mentions
0No linked articles in our index yet.