An issue summary information disclosure vulnerability exists in Atlassian Jira Tempo plugin, version 4.10.0. Authenticated users can obtain the summary for issues they do not have permission to view via the Tempo plugin.
References
Link | Resource |
---|---|
https://talosintelligence.com/vulnerability_reports/TALOS-2019-0838 | Exploit Third Party Advisory |
Configurations
Information
Published : 2019-10-31 13:15
Updated : 2019-11-04 06:48
NVD link : CVE-2019-5095
Mitre link : CVE-2019-5095
JSON object : View
CWE
CWE-862
Missing Authorization
Products Affected
tempo
- tempo