VDB

CVE-2023-45133

CVE-2023-45133 PUBLISHED CVSS 9.300000190734863 CRITICAL

*This is a vulnerability in a non-Atlassian Jira Software Data Cente dependency. Atlassian's application of this dependency presents a lower, non-critical assessed risk.* This vulnerability affects certain versions of Atlassian Jira Software Data Center. The @babel/traverse dependency is affected by CVE-2023-45133, which allows arbitrary code execution when Babel compiles specially crafted code using a vulnerable plugin. Upgrade to a release greater than or equal to 11.3.10 This is a vulnerability in a non-Atlassian Jira Software Data Center dependency. Atlassian's application of this dependency presents a lower, non-critical assessed risk.

EPSS 0.52% · 42.1th percentile

Risk Scores

CVSS 3.1
9.300000190734863
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
EPSS Score
0.52%
42.1th percentile

Affected Products

VendorProductVersions
AtlassianJira Software Data Center
AtlassianBitbucket Data Center
AtlassianBitbucket Server

Timeline

  • Oct 12, 2023 CVE Published
  • Oct 13, 2023 EPSS Score
  • Nov 14, 2023 EPSS Score
  • Dec 16, 2023 EPSS Score
  • Jan 17, 2024 EPSS Score
  • Feb 18, 2024 EPSS Score
  • Mar 21, 2024 EPSS Score
  • Apr 22, 2024 EPSS Score
  • May 24, 2024 EPSS Score
  • Jun 24, 2024 EPSS Score
  • Jul 26, 2024 EPSS Score
  • Aug 27, 2024 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›