Loading HuntDB...

GHSA-fr35-qpgv-g932

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

Affected versions of Atlassian Jira Server and Data Center allow remote attackers to modify several resources (including CsvFieldMappingsPage.jspa and ImporterValueMappingsPage.jspa) via a Cross-Site Request Forgery (CSRF) vulnerability in the jira-importers-plugin. The affected versions are before version 8.13.15, and from version 8.14.0 before 8.20.3.

Related CVEs

Key Information

GHSA ID
GHSA-fr35-qpgv-g932
Published
February 16, 2022 12:01 AM
Last Modified
March 26, 2022 12:01 AM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: July 28, 2025 6:37 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.