Medium severity5.3NVD Advisory· Published Jul 1, 2020· Updated Jun 17, 2026
CVE-2019-20408
CVE-2019-20408
Description
The /plugins/servlet/gadgets/makeRequest resource in Jira before version 8.7.0 allows remote attackers to access the content of internal network resources via a Server Side Request Forgery (SSRF) vulnerability due to a logic bug in the JiraWhitelist class.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Range: unspecified
Patches
Vulnerability mechanics
References
1- jira.atlassian.com/browse/JRASERVER-71204nvdIssue TrackingVendor Advisory
News mentions
0No linked articles in our index yet.