Uploaded image for project: 'Jira Data Center'
  1. Jira Data Center
  2. JRASERVER-74771

Information Disclosure via QueryCompenentRenderer API

XMLWordPrintable

      Affected versions of Atlassian Jira Server and Data Centre allowed an unauthenticated remote attacker to fetch Issue,Project and Sprint information via Information Disclosure Vulnerability via "/secure/QueryComponentRendererValue!Default.jspa" endpoint.

      Affected versions:

      • version < 9.5.1

      Fixed versions:

      • 8.20.21 and newer
      • 9.4.4 and newer
      • 9.5.1 and newer
      • 9.6.0 and newer

              Unassigned Unassigned
              security-metrics-bot Security Metrics Bot
              Votes:
              0 Vote for this issue
              Watchers:
              43 Start watching this issue

                Created:
                Updated:
                Resolved: