The ViewSystemInfo class doGarbageCollection method in Jira before version 7.13.6, from version 8.0.0 before version 8.2.3, and from version 8.3.0 before version 8.3.2 allows remote attackers to trigger garbage collection via a Cross-site request forgery (CSRF) vulnerability.
2019-08-23T14:15:11.343
2024-11-21T04:21:23.743
Modified
CVSSv3.0: 4.3 (MEDIUM)
AV:N/AC:M/Au:N/C:N/I:N/A:P
8.6
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | atlassian | jira | < 7.13.6 | Yes |
Application | atlassian | jira_server | < 8.2.3 | Yes |
Application | atlassian | jira_server | < 8.3.2 | Yes |