Lucene search

K
prionPRIOn knowledge basePRION:CVE-2024-23319
HistoryFeb 09, 2024 - 3:15 p.m.

Cross site request forgery (csrf)

2024-02-0915:15:00
PRIOn knowledge base
www.prio-n.com
2
cross site request forgery
mattermost
jira plugin
logout
attacker
crafted message
user's jira connection

7.2 High

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

13.3%

Mattermost Jira Plugin fails to protect against logout CSRF allowing an attacker to post a specially crafted message that would disconnect a user’sΒ Jira connection in Mattermost only by viewing the message.

CPENameOperatorVersion
mattermost_serverle8.1.7

7.2 High

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

13.3%

Related for PRION:CVE-2024-23319