-
Type:
Bug
-
Resolution: Answered
-
Priority:
Highest
-
Component/s: None
NOTE: This bug report is for JIRA Cloud. Using JIRA Server? See the corresponding bug report.
While trying to add one issue (Which contained some special character),
Exception is displayed and under that exception, database schema of JIRA is exposed
Special characters were:
(¡™£¢∞§¶•ªº–≠“‘«…æ≤≥÷ ) or (кнαη мαηѕσσя)
This can be possibility of SQL Injection
Screenshot attached
- is related to
-
JRASERVER-39772 JIRA :: Possibility of SQL Injection as database schema exposed in exception
-
- Closed
-