CVE-2019-8449 | JIRA up to 8.3.x groupuserpicker Username information disclosure (ID 156172 / EDB-47990)
A vulnerability classified as problematic was found in JIRA up to 8.3.x. Affected by this vulnerability is an unknown functionality of the file /rest/api/latest/groupuserpicker. The manipulation leads to information disclosure (Username).
This vulnerability is known as CVE-2019-8449. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.