-
Type:
Bug
-
Resolution: Fixed
-
Priority:
Low
-
Component/s: Work Item - Create - Global
-
3.5
NOTE: This bug report is for JIRA Cloud. Using JIRA Server? See the corresponding bug report.
The JIRA issue collector REST API is vulnerable to CSRF:
curl -X POST 'https://example.com/rest/collectors/1.0/template/custom/<collector_id>' --data 'pid=<project_id>&summary=testwithcurl&description=mydesc'
- is related to
-
JRASERVER-44198 CSRF vulnerability in the issue collector
-
- Closed
-