Medium severity6.1NVD Advisory· Published Jan 11, 2023· Updated Jun 17, 2026
CVE-2023-22958
CVE-2023-22958
Description
The Syracom Secure Login plugin before 3.1.1.0 for Jira may allow spoofing of 2FA PIN validation via the plugins/servlet/twofactor/public/pinvalidation target parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: <3.1.1.0
Patches
Vulnerability mechanics
References
1- github.com/piuppi/Proof-of-Concepts/blob/main/Syracom/SecureLogin2FA-OpenRedirect.mdnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.