vulnerability

Atlassian JIRA: Cross-Site Request Forgery (CSRF) (CVE-2019-20405)

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:P/A:N)
Published
Feb 6, 2020
Added
Feb 11, 2020
Modified
Aug 11, 2025

Description

The JMX monitoring flag in Atlassian Jira Server and Data Center before version 8.6.0 allows remote attackers to turn the JMX monitoring flag off or on via a Cross-site request forgery (CSRF) vulnerability.

Solution

atlassian-jira-upgrade-8_6_0
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.