An issue in Deviniti Issue Sync Synchronization v3.5.2 for Jira allows attackers to obtain the login credentials of a user via a crafted request sent to /rest/synchronizer/1.0/technicalUser.
Affected Software
| Name | Vendor | Start Version | End Version |
|---|
| Issue_sync | Deviniti | * | 3.5.2 (excluding) |
References