Description
The FilterPickerPopup.jspa resource in Jira before version 7.13.7, and from version 8.0.0 before version 8.3.3 allows remote attackers to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability in the searchOwnerUserName parameter.
Remediation
References
Related Vulnerabilities
Oracle Database Server CVE-2011-0870 Vulnerability (CVE-2011-0870)
WordPress Plugin Top 10-Popular posts for WordPress Cross-Site Scripting (2.3.0)
WordPress Plugin WordPress+Microsoft Office 365/Azure AD-LOGIN Unspecified Vulnerability (11.6)
WordPress Plugin Malware Finder Cross-Site Scripting (1.1)
WordPress Plugin Photo Gallery, Images, Slider in Rbs Image Gallery Cross-Site Scripting (3.2.12)