Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Webhooks component of Atlassian Jira before version 7.6.7 and from version 7.7.0 before version 7.11.0 allows remote attackers who are able to observe or otherwise intercept webhook events to learn information about changes in issues that should not be sent because they are not contained within the results of a specified JQL query.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Atlassian Jira Webhooks组件安全漏洞
Vulnerability Description
Atlassian Jira是澳大利亚Atlassian公司的一套缺陷跟踪管理系统。该系统主要用于对工作中各类问题、缺陷进行跟踪管理。Webhooks是其中的一个为系统提供实时信息的组件。 Atlassian Jira 7.6.7之前版本和7.7.0版本至7.11.0版本(不包含7.11.0版本)中的Webhooks组件存在安全漏洞。远程攻击者可通过观察或拦截Webhook事件利用该漏洞获取信息。
CVSS Information
N/A
Vulnerability Type
N/A