AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2021-39115

HIGH · CVSS 7.2 EPSS 4.48%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2021-09-01 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2021-39115
Severity
HIGH
CVSS
7.2
EPSS
4.48%
Java

Original NVD Description

Affected versions of Atlassian Jira Service Management Server and Data Center allow remote attackers with "Jira Administrators" access to execute arbitrary Java code or run arbitrary system commands via a Server_Side Template Injection vulnerability in the Email Template feature. The affected versions are before version 4.13.9, and from version 4.14.0 before 4.18.0.