CVE-2021-26086 | Atlassian JIRA Server/Data Center up to 8.5.13/8.13.5/8.16.0 Endpoint /WEB-INF/web.xml path traversal (JRASERVER-72695 / EDB-50380)
A vulnerability classified as critical has been found in Atlassian JIRA Server and Data Center up to 8.5.13/8.13.5/8.16.0. This affects an unknown part of the file /WEB-INF/web.xml of the component Endpoint. The manipulation leads to path traversal.
This vulnerability is uniquely identified as CVE-2021-26086. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.