> ## Content Index
> Fetch the complete content index at: https://darkwebinformer.com/llms.txt
> Use this file to discover other available public pages before exploring further.

# CVE-2025-22157: Privilege Escalation Vulnerability in Jira Core Data Center
- URL: https://darkwebinformer.com/cve-2025-22157-privilege-escalation-vulnerability-in-jira-core-data-center/
- Published: 2025-07-02T00:05:47.000Z
- Updated: 2025-09-04T22:21:27.000Z
- Author: Dark Web Informer
- Tags: Vulnerabilities

---

## 🧠 TL;DR

A newly disclosed vulnerability (CVE-2025-22157) affects **Atlassian Jira Core Data Center**, allowing authenticated users to escalate privileges under specific conditions. While no public PoC is currently available, the attack surface is significant—over **105,000** exposed Jira instances have been identified via ZoomEye. Organizations should review access controls and apply patches as soon as possible.

---

## 📋 Vulnerability Details

### CVE-2025-22157

- **Type:** Privilege Escalation (PrivEsc)
- **Component:** Atlassian Jira Core Data Center
- **CVSS Score:** 7.2 (High)
- **Description:** An authenticated user can exploit flawed permission handling to gain unauthorized elevated access within Jira environments.

---

## 🔍 Threat Hunting

### ZoomEye Dork

iniCopyEdit`app="Atlassian JIRA"`  

### Live Search

🔗 [ZoomEye Search Results](https://www.zoomeye.ai/searchResult?q=YXBwPSJBdGxhc3NpYW4gSklSQSI%3D)

**Exposed Systems:** 105,995 at the time of writing.

![](https://storage.ghost.io/c/6b/16/6b16ac9c-cd67-432f-b0f3-bbec941084ff/content/images/2025/07/827395873258778231-2.png)

---

## 📄 Official Advisory

- [GHSA-352j-376q-2pmc](https://github.com/advisories/GHSA-352j-376q-2pmc)

---

## 🛡️ Recommended Action

- Apply the latest security updates from Atlassian.
- Review role and permission settings in Jira Core.
- Limit administrative access to trusted personnel.
- Monitor audit logs for unusual account activity.

---

## 🎯 Affected Environments

- Atlassian Jira Core Data Center
- Potential overlap with Jira Software/Data Center editions in enterprise deployments.

---

## 🧰 TTPs (MITRE Mapping)

- **T1068:** Exploitation for Privilege Escalation
- **T1078:** Valid Accounts
- **T1087:** Account Discovery

---

## 📚 References

- <https://github.com/advisories/GHSA-352j-376q-2pmc>
- <https://www.zoomeye.ai/searchResult?q=YXBwPSJBdGxhc3NpYW4gSklSQSI%3D>