diff --git a/security-misconfiguration/jira-unauthenticated-projects.yaml b/security-misconfiguration/jira-unauthenticated-projects.yaml new file mode 100644 index 0000000000..2cb3a52bf7 --- /dev/null +++ b/security-misconfiguration/jira-unauthenticated-projects.yaml @@ -0,0 +1,18 @@ +id: jira-unauthenticated-projects + +info: + name: Jira Unauthenticated Projects + author: TechbrunchFR + severity: Info + +requests: + - method: GET + path: + - "{{BaseURL}}/rest/api/2/project?maxResults=100" + matchers: + - type: word + words: + - 'projects' + - 'startAt' + - 'maxResults' + condition: and