Description
Several worklog rest resources in Jira before version 7.13.7, and from version 8.0.0 before version 8.3.2 allow remote attackers to view worklog time information via a missing permissions check.
Remediation
References
Related Vulnerabilities
WordPress Plugin Subscribe to Comments Multiple Cross-Site Scripting Vulnerabilities (2.0.4)
WordPress Plugin WP Munich Blocks-Gutenberg Blocks for WordPress Security Bypass (0.7.2)
WordPress Plugin Product Catalog Multiple Vulnerabilities (3.1.2)
WordPress Plugin WP E-Signature Remote Code Execution (1.5.6.5)