Description
The Gadget API in Atlassian Jira Server and Data Center in affected versions allows remote attackers to make Jira unresponsive via repeated requests to a certain endpoint in the Gadget API. The affected versions are before version 8.5.4, and from version 8.6.0 before 8.6.1.
Remediation
References
Related Vulnerabilities
Django Numeric Errors Vulnerability (CVE-2013-0306)
WordPress Plugin WordPress Ping Optimizer Cross-Site Request Forgery (2.35.1.2.3)
WordPress Plugin Cart66 Lite::WordPress Ecommerce SQL Injection (1.5.1.17)
MySQL CVE-2021-2300 Vulnerability (CVE-2021-2300)
IBM RTC Generation of Error Message Containing Sensitive Information (CVE-2020-4487)