Description
The ConfigureBambooRelease resource in Jira Software and Jira Software Data Center before version 8.6.1 allows authenticated remote attackers to view release version information in projects that they do not have access to through an missing authorisation check.
Remediation
References
Related Vulnerabilities
Next.js User Interface (UI) Misrepresentation of Critical Information Vulnerability (CVE-2022-23646)
WebLogic CVE-2019-2398 Vulnerability (CVE-2019-2398)
MySQL CVE-2013-5807 Vulnerability (CVE-2013-5807)
TYPO3 Improper Input Validation Vulnerability (CVE-2010-3716)
Plone CMS Improper Input Validation Vulnerability (CVE-2013-4199)