First published: Fri Jul 03 2020(Updated: )
Affected versions of Atlassian Jira Server and Data Center allow remote attackers to prevent users from accessing the instance via an Application Denial of Service vulnerability in the /rendering/wiki endpoint. The affected versions are before version 8.8.0.
Credit: security@atlassian.com
Affected Software | Affected Version | How to fix |
---|---|---|
Atlassian JIRA | <8.8.0 | |
Atlassian Jira Software Data Center | <8.8.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2019-20418.
The affected software includes Atlassian Jira Server and Atlassian Jira Software Data Center.
The severity of CVE-2019-20418 is medium with a CVSS score of 6.5.
Remote attackers can exploit CVE-2019-20418 by preventing users from accessing the instance via an Application Denial of Service vulnerability in the /rendering/wiki endpoint.
To fix CVE-2019-20418, upgrade to version 8.8.0 or later of Atlassian Jira Server or Atlassian Jira Software Data Center.