CVE Published: 13/07/2020 |
CVE Updated: 16/09/2024 |
CVE Year: 2019 Source: atlassian |
Vendor: Atlassian |
Product: Jira Server Status : PUBLISHED
CVE-2019-20897 Description
The avatar upload feature in affected versions of Atlassian Jira Server and Data Center allows remote attackers to achieve Denial of Service via a crafted PNG file. The affected versions are before version 8.5.4, from version 8.6.0 before 8.6.2, and from version 8.7.0 before 8.7.1.