GHSA-8wr9-r69x-g268
GitHub Security Advisory
⚠ Unreviewed
MODERATE
Has CVE
Advisory Details
The /rest/api/latest/groupuserpicker resource in Jira before version 8.4.0 allows remote attackers to enumerate usernames via an information disclosure vulnerability.
Related CVEs
Key Information
5.0
/10
Dataset
Last updated: September 5, 2025 6:30 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.