---
title: "2022-02-04 Low Severity Vulnerability"
canonical: "https://support.appfire.com/space/RFP/803406994/2022-02-04%20Low%20Severity%20Vulnerability"
format: markdown
---
> Macro (aura-html)

  


| **Summary** | Low Severity Vulnerability |
| --- | --- |
| **Advisory Date** | <span style="color: #172b4d">February 4, 2022 </span> |
| **Product** | [Rich Filters for Jira Dashboards](https://marketplace.atlassian.com/apps/1214789/rich-filters-for-jira-dashboards?hosting=datacenter&tab=overview) |
| **Affected versions** | Rich Filters **Server and Data Center versions** up to 1.20.0 included |
| **Not Impacted** | Rich Filters Cloud is not affected |
| **Updated versions** | Rich Filters for Jira Dashboards for Server / Data Center version **1.21.0** and above |
| **CVSS Base Score** | 3.7 |

### Summary of vulnerability

This advisory discloses a low-severity security vulnerability affecting our [Rich Filters for Jira Dashboards app](https://marketplace.atlassian.com/1214789) on the **Server and Data Center only**. The Cloud version of the app has not been affected in any way.

This vulnerability has been discovered through our security audits, and we're not aware that this vulnerability was known and exploited before the date of this advisory. 

### Description

It is possible for attackers who have login rights together with some other specific permissions to gain access that is restricted to other users on the same instance. This can lead to information disclosure. 

### What you need to do

Upgrade your Rich Filters for Jira Dashboards app for **Server/Data Center** to version 1.21.0 or above. 

### Support

If you have questions or concerns regarding this advisory, please raise a support request via our [support portal](http://appf.re/support).