Description
The inline-create rest resource in Jira before version 7.12.3 allows authenticated remote attackers to set the reporter in issues via a missing authorisation check.
Remediation
References
Related Vulnerabilities
GeoServer CVE-2023-35042 Vulnerability (CVE-2023-35042)
WordPress Plugin bodi0`s Bots visits counter Cross-Site Scripting (0.8.1)
Atlassian Jira CVE-2020-14178 Vulnerability (CVE-2020-14178)
WordPress 3.8.x Multiple Vulnerabilities (3.8 - 3.8.29)
MyBB Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2011-5131)