Unrated severityNVD Advisory· Published Sep 11, 2019· Updated Sep 16, 2024
CVE-2019-8451
CVE-2019-8451
Description
The /plugins/servlet/gadgets/makeRequest resource in Jira before version 8.4.0 allows remote attackers to access the content of internal network resources via a Server Side Request Forgery (SSRF) vulnerability due to a logic bug in the JiraWhitelist class.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- jira.atlassian.com/browse/JRASERVER-69793mitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.