Look for a formal announcement from Atlassian, however my findings are as follows:
This CVE is for jsonwebtoken <= 8.5.1.
* I say "likely" here as I have no real way of knowing what they do internally, so again, look for a formal announcement from Atlassian.
Hi @Jörg Werner
I'd check on the Security Advisories pages:
Ste
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Hi @Jörg Werner
Currently we have no formal announcement from Atlassian. I would indeed take a look at the links provided by Stephen and keep a look out at the community as well.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Online forums and learning are now in one easy-to-use experience.
By continuing, you accept the updated Community Terms of Use and acknowledge the Privacy Policy. Your public name, photo, and achievements may be publicly visible and available in search engines.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.