Various exposed resources of the ViewLogging class in Jira before version 7.13.6, from version 8.0.0 before version 8.2.3, and from version 8.3.0 before version 8.3.2 allow remote attackers to modify various settings via Cross-site request forgery (CSRF).
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: atlassian

Published: 2019-08-23T13:49:47.620456Z

Updated: 2024-09-17T02:06:37.521Z

Reserved: 2019-04-29T00:00:00

Link: CVE-2019-11587

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2019-08-23T14:15:11.047

Modified: 2022-03-25T17:20:54.747

Link: CVE-2019-11587

cve-icon Redhat

No data.