QID 730365
Date Published: 2022-03-14
QID 730365: Atlassian Jira Server and Data Center Cross-Site Request Forgery (CSRF) Vulnerability (JRASERVER-73073)
Jira is a proprietary issue tracking product, developed by Atlassian. It provides bug tracking, issue tracking, and project management functions.
Affected version:
Atlassian Jira Server and Data Center version below 8.13.15
Atlassian Jira Server and Data Center version from 8.14.0 to 8.20.3
Remote attackers to modify several resources (including CsvFieldMappingsPage.jspa and ImporterValueMappingsPage.jspa)
Solution
Customers are advised to refer to JRASERVER-73073 for updates pertaining to this vulnerability.
Vendor References
- JRASERVER-73073 -
jira.atlassian.com/browse/JRASERVER-73073
CVEs related to QID 730365
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| JRASERVER-73073 |
|