Affected versions of Atlassian Jira Service Management Server and Data Center allow authenticated remote attackers to view import source configuration information via a Broken Access Control vulnerability in the Insight Import Source feature. The affected versions are before version 4.21.0.
| Software | From | Fixed in |
|---|---|---|
| atlassian / jira_service_management | - | 4.21.0 |