CVE-2023-45133
*This is a vulnerability in a non-Atlassian Jira Software Data Cente dependency. Atlassian's application of this dependency presents a lower, non-critical assessed risk.* This vulnerability affects certain versions of Atlassian Jira Software Data Center. The @babel/traverse dependency is affected by CVE-2023-45133, which allows arbitrary code execution when Babel compiles specially crafted code using a vulnerable plugin. Upgrade to a release greater than or equal to 11.3.10 This is a vulnerability in a non-Atlassian Jira Software Data Center dependency. Atlassian's application of this dependency presents a lower, non-critical assessed risk.
EPSS 0.52% · 42.1th percentile
Risk Scores
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Atlassian | Jira Software Data Center | |
| Atlassian | Bitbucket Data Center | |
| Atlassian | Bitbucket Server |
Timeline
- Oct 12, 2023 CVE Published
- Oct 13, 2023 EPSS Score
- Nov 14, 2023 EPSS Score
- Dec 16, 2023 EPSS Score
- Jan 17, 2024 EPSS Score
- Feb 18, 2024 EPSS Score
- Mar 21, 2024 EPSS Score
- Apr 22, 2024 EPSS Score
- May 24, 2024 EPSS Score
- Jun 24, 2024 EPSS Score
- Jul 26, 2024 EPSS Score
- Aug 27, 2024 EPSS Score