Forums

Articles
Create
cancel
Showing results for 
Search instead for 
Did you mean: 

We have jira service desk. CVE-2022-0540 makes no mention.

Nick Urbanik
I'm New Here
I'm New Here
Those new to the Atlassian Community have posted less than three times. Give them a warm welcome!
April 20, 2022

Are we vulnerable to CVE-2022-0540?  If so, which product should we upgrade to, since I do not see Jira Service Desk mentioned anywhere in your product range.

2 answers

1 accepted

2 votes
Answer accepted
Andy Heinzer
Atlassian Team
Atlassian Team members are employees working across the company in a wide variety of roles.
April 21, 2022

Jira Service Desk was renamed to Jira Service Management.  And we do list it in https://confluence.atlassian.com/jira/jira-security-advisory-2022-04-20-1115127899.html

From that page:

Affected Jira Service Management Versions

This includes the following products:

  • Jira Service Management Server
  • Jira Service Management Data Center

  • All versions before 4.13.18
  • 4.14.x
  • 4.15.x
  • 4.16.x
  • 4.17.x
  • 4.18.x
  • 4.19.x
  • 4.20.x before 4.20.6
  • 4.21.x

Fixed Jira Service Management Versions

  • 4.13.x >= 4.13.18
  • 4.20.x >= 4.20.6
  • All versions >= 4.22.0
0 votes
Jack Brickey
Community Champion
April 20, 2022

Hi @Nick Urbanik ,

this is pretty new info. Per this post I would recommend contacting Atlassian Support.

Suggest an answer

Log in or Sign up to answer