Medium severity5.3NVD Advisory· Published Feb 6, 2020· Updated Jun 17, 2026
CVE-2019-20403
CVE-2019-20403
Description
The API in Atlassian Jira Server and Data Center before version 8.6.0 allows remote attackers to determine if a Jira project key exists or not via an information disclosure vulnerability.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- cpe:2.3:a:atlassian:jira_data_center:*:*:*:*:*:*:*:*Range: >=7.13.0,<8.5.5
cpe:2.3:a:atlassian:jira_server:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:atlassian:jira_server:*:*:*:*:*:*:*:*range: >7.13.0,<8.5.5
- (no CPE)range: unspecified
- Range: <8.6.0
Patches
Vulnerability mechanics
References
1- jira.atlassian.com/browse/JRASERVER-70565nvdIssue TrackingVendor Advisory
News mentions
0No linked articles in our index yet.