Atlassian Jira Data Center Vulnerability Allows Data Access
A security flaw in atlassians Jira Data Center software allows attackers to potentially access sensitive data, the company has warned. the vulnerability, tracked as CVE-2025-22166 and nicknamed “hoch,” could be exploited to launch Denial-of-Service (DoS) attacks, creating a pathway for broader compromise.
Administrators are urged to instantly update their systems to patched versions – 8.5.25, 9.2.7, or 10.0.2 - to mitigate the risk. While no active exploitation of the vulnerability has been reported, the potential for data breaches and service disruption necessitates prompt action. The developers have already released fixes in Versions 9.12.28, 10.3.12 and 11.1.0 to address the issue.