Description
The quick search component in Atlassian Jira Server and Data Center before 8.9.1 allows remote attackers to inject arbitrary HTML or JavaScript via a Cross-Site Scripting (XSS) vulnerability
Remediation
References
Related Vulnerabilities
Oracle Application Server CVE-2006-0285 Vulnerability (CVE-2006-0285)
Ruby on Rails Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2020-8166)
Dolphin Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2011-3728)
Moodle Improper Input Validation Vulnerability (CVE-2018-1137)