CVE WATCH / VULNERABILITY DETAIL

CVE-2026-100900

MEDIUMCVSS 5.5NVD feed

Published 28 September 2026 · tracked since 28 September 2026

Description

A vulnerability has been found in DevaslanPHP project-management 1.2.1/1.2.2/1.2.3/1.2.4/v2.0.0-beta1. Affected is the function updateJiraProjects of the file /jira-import of the component Jira Import. The manipulation of the argument host/username/token leads to server-side request forgery. It is p

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

CVE-2026-100900 — Vulnerability Details | Logic Encoder
CVE WATCH / VULNERABILITY DETAIL

CVE-2026-100900

MEDIUMCVSS 5.5NVD feed

Published 28 September 2026 · tracked since 28 September 2026

Description

A vulnerability has been found in DevaslanPHP project-management 1.2.1/1.2.2/1.2.3/1.2.4/v2.0.0-beta1. Affected is the function updateJiraProjects of the file /jira-import of the component Jira Import. The manipulation of the argument host/username/token leads to server-side request forgery. It is p

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

[an error occurred while processing this directive]