Medium severity4.3NVD Advisory· Published Sep 14, 2021· Updated Jun 17, 2026
CVE-2021-39124
CVE-2021-39124
Description
The Cross-Site Request Forgery (CSRF) failure retry feature of Atlassian Jira Server and Data Center before version 8.16.0 allows remote attackers who are able to trick a user into retrying a request to bypass CSRF protection and replay a crafted request.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5- Range: <8.16.0
- Range: unspecified
- Range: unspecified
Patches
Vulnerability mechanics
References
1- jira.atlassian.com/browse/JRASERVER-72761nvdVendor Advisory
News mentions
0No linked articles in our index yet.