Medium severity5.3NVD Advisory· Published Sep 11, 2019· Updated Jun 17, 2026
CVE-2019-14995
CVE-2019-14995
Description
The /rest/api/1.0/render resource in Jira before version 8.4.0 allows remote anonymous attackers to determine if an attachment with a specific name exists and if an issue key is valid via a missing permissions check.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
3- www.talosintelligence.com/vulnerability_reports/TALOS-2019-0836nvdExploitThird Party Advisory
- www.talosintelligence.com/vulnerability_reports/TALOS-2019-0837nvdExploitThird Party Advisory
- jira.atlassian.com/browse/JRASERVER-69792nvdIssue TrackingVendor Advisory
News mentions
0No linked articles in our index yet.