← Back to CVE List

CVE-2019-8442

Published: 2019-05-22T18:29Z
Last Modified: 2024-11-21T04:49Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
The CachingResourceDownloadRewriteRule class in Jira before version 7.13.4, and from version 8.0.0 before version 8.0.4, and from version 8.1.0 before version 8.1.1 allows remote attackers to access files in the Jira webroot under the META-INF directory via a lax path access check. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt