CVE-2019-20401

Publication date

2020-02-06 03:10:26

Family

atlassian

State

PUBLISHED

Description

Various installation setup resources in Jira before version 8.5.2 allow remote attackers to configure a Jira instance, which has not yet finished being installed, via Cross-site request forgery (CSRF) vulnerabilities.