Hi,
I saw this issue about some XSS injection in JIRA:
https://jira.atlassian.com/browse/JRASERVER-69238
However it is not clear how to fix the issue and if there are any patch available for that issue?
We have JIRA version 7.13.0
Any help on where to find the patch would be greatly appreciated.
Thank you.
The issue was fixed in 7.13.1 and 8.0, if you look at the issue you can see those versions listed in the Fixed Version/s field. You can get older version of Jira if you go to Older versions and click Show details on the 7.0 version.
Thanks for the reply.
Does this mean that no individual patch is available and that a full version upgrade is needed to fix that issue?
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Correct, you would have to upgrade to 7.13.1 or 8.0 in order to get the patch for the issue.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Online forums and learning are now in one easy-to-use experience.
By continuing, you accept the updated Community Terms of Use and acknowledge the Privacy Policy. Your public name, photo, and achievements may be publicly visible and available in search engines.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.