Forums

Articles
Create
cancel
Showing results for 
Search instead for 
Did you mean: 

Block ServerInfo API Request

ronalddb89
I'm New Here
I'm New Here
Those new to the Atlassian Community have posted less than three times. Give them a warm welcome!
May 22, 2018

Dear community,

The following API command returns a full representation of the server:

{$BASE_URL}/rest/api/2/serverInfo

For us, this is a major security incident. Is there a possibility to hide this information or to block this request.

1 answer

0 votes
Alexey Matveev
Rising Star
Rising Star
Rising Stars are recognized for providing high-quality answers to other users. Rising Stars receive a certificate of achievement and are on the path to becoming Community Leaders.
May 22, 2018

Hello,

What do you consider sensitive about this info? All this info can be seen in Jira UI. Login to Jira, go to Dashboards and have look at the footer. You will find similar info there:

Here is the footer of my Jira instance:

Suggest an answer

Log in or Sign up to answer
TAGS
AUG Leaders

Atlassian Community Events