Beveiligingsadvies

CVE-2017-18097

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2018-04-06 13:00:00
Laatst bijgewerkt 2024-09-16 22:14:42
Toegewezen door atlassian
CVSS-score geen score
Status PUBLISHED

Beschrijving

The Trello board importer resource in Atlassian Jira before version 7.6.1 allows remote attackers who can convince a Jira administrator to import their Trello board to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability in the title of a Trello card.