Jira ViewSystemInfo Class CSRF Garbage Collection Vulnerability

Jira ViewSystemInfo Class CSRF Garbage Collection Vulnerability

CVE-2019-11588 · MEDIUM Severity

AV:N/AC:M/AU:N/C:N/I:N/A:P

The ViewSystemInfo class doGarbageCollection method in Jira before version 7.13.6, from version 8.0.0 before version 8.2.3, and from version 8.3.0 before version 8.3.2 allows remote attackers to trigger garbage collection via a Cross-site request forgery (CSRF) vulnerability.

Learn more about our Web Application Penetration Testing UK.