Hi with reference to vulnerability - CVE-2021-42574 - Multiple Products Security Advisory - Unrendered unicode bidirectional override characters - CVE-2021-42574 | Atlassian Support | Atlassian Documentation we need to upgrade.
Can we do an in place upgrade form our existing version 7.5.1 to
7.13.18. Or event version 8.
Can we just sue the installer ? - Upgrading JIRA applications using the installer | Administering Jira applications Data Center and Server 7.5 | Atlassian Documentation
Thanks Ross
Hi Ross,
I see this question has gone unanswered! An upgrade is in order for your 7.5 instance.
There are two primary concerns when considering an upgrade:
The document you've linked is a great resource for upgrading, and the supported platform concern is outlined in that document.
I will note that you need to upgrade to Jira 8.13.13 , or 8.20.1 (or newer) in order to mitigate against this CVE. There are no versions of Jira 7 with the fix for this CVE.
Cheers,
Daniel | Atlassian Community Support
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.