Forums

Articles
Create
cancel
Showing results for 
Search instead for 
Did you mean: 

idle timeout settings look like for Trello.

Dee Ann
I'm New Here
I'm New Here
Those new to the Atlassian Community have posted less than three times. Give them a warm welcome!
December 16, 2022

We were notified of a design flaw in the Atlassian suite of products, including Trello, where session cookies do not expire unless a user logs out or after 30 days. Please read their message below:

“This of course could make session hijacking easier for an adversary.  We want to know what idle timeout settings look like for Trello.

References:
https://www.darkreading.com/threat-intelligence/security-flaw-in-atlassian-products-affecting-multiple-companies
https://cloudsek.com/security-flaw-in-atlassian-products-jira-confluencetrello-bitbucket-affecting-multiple-companies/

 

 

1 answer

0 votes
Nic Brough -Adaptavist-
Rising Star
Rising Star
Rising Stars are recognized for providing high-quality answers to other users. Rising Stars receive a certificate of achievement and are on the path to becoming Community Leaders.
December 16, 2022

Suggest an answer

Log in or Sign up to answer
TAGS
AUG Leaders

Atlassian Community Events