← back
CVE-2019-3401CWE-863

CVE-2019-3401

23Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendepss 13%
exploitation probability
13%top 4% of all CVEs
observed exploitation
nono source reports it
The ManageFilters.jspa resource in Jira before version 7.13.3 and from version 8.0.0 before version 8.1.1 allows remote attackers to enumerate usernames via an incorrect authorisation check.
Affected products
Atlassian · Jira