CVE Published: 18/09/2018 |
CVE Updated: 16/09/2024 |
CVE Year: 2018 Source: atlassian |
Vendor: Atlassian |
Product: Fisheye and Crucible Status : PUBLISHED
CVE-2018-13398 Description
The administrative smart-commits resource in Atlassian Fisheye and Crucible before version 4.5.4 allows remote attackers to modify smart-commit settings via a Cross-site request forgery (CSRF) vulnerability.