Hi,
I saw this issue about some XSS injection in JIRA:
https://jira.atlassian.com/browse/JRASERVER-69238
However it is not clear how to fix the issue and if there are any patch available for that issue?
We have JIRA version 7.13.0
Any help on where to find the patch would be greatly appreciated.
Thank you.
The issue was fixed in 7.13.1 and 8.0, if you look at the issue you can see those versions listed in the Fixed Version/s field. You can get older version of Jira if you go to Older versions and click Show details on the 7.0 version.
Thanks for the reply.
Does this mean that no individual patch is available and that a full version upgrade is needed to fix that issue?
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Correct, you would have to upgrade to 7.13.1 or 8.0 in order to get the patch for the issue.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.