-
Type:
Bug
-
Resolution: Fixed
-
Priority:
Low
-
Affects Version/s: 4.8.1
-
Component/s: API and Integrations
-
Severity 3 - Minor
Affected versions of Atlassian Jira Service Desk Server and Data Center allow remote attackers authenticated as a non-administrator user to view Project Request-Types and Descriptions, via an Information Disclosure vulnerability in the editform request-type-fields resource.
Affected versions:
- version < 4.12.0
Fixed versions:
- 4.12.0