CVE-2023-42361

Severity CVSS v4.0:
Pending analysis
Type:
CWE-918 Server-Side Request Forgery (SSRF)
Publication date:
07/11/2023
Last modified:
15/11/2023

Description

Local File Inclusion vulnerability in Midori-global Better PDF Exporter for Jira Server and Jira Data Center v.10.3.0 and before allows an attacker to view arbitrary files and cause other impacts via use of crafted image during PDF export.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:midori-global:better_pdf_exporter:*:*:*:*:*:jira_data_center:*:* 11.0.0 (excluding)
cpe:2.3:a:midori-global:better_pdf_exporter:*:*:*:*:*:jira_server:*:* 11.0.0 (excluding)