CVE-2019-3399

Publication date

2019-04-30 15:28:27

Family

atlassian

State

PUBLISHED

Description

The BrowseProjects.jspa resource in Jira before version 7.13.2, and from version 8.0.0 before version 8.0.2 allows remote attackers to see information for archived projects through a missing authorisation check.