IMPORTANT: JAC is a Public system and anyone on the internet will be able to view the data in the created JAC tickets. Please don’t include Customer or Sensitive data in the JAC ticket.

    • Icon: Bug Bug
    • Resolution: Fixed
    • Icon: Highest Highest
    • 2.2.5, 2.3.8, 2.4.2
    • None
    • None
    • None

      We have identified and fixed a cross-site scripting (XSS) vulnerability in FishEye charts.

      Affected versions are FishEye 2.2.0 to 2.4.0 inclusive.

      XSS vulnerabilities potentially allow an attacker to embed their own JavaScript into a FishEye/Crucible page. You can read more about XSS attacks at various places on the web, including these:

      This issue is reported in our security advisory on these pages:

            Loading...
            IMPORTANT: JAC is a Public system and anyone on the internet will be able to view the data in the created JAC tickets. Please don’t include Customer or Sensitive data in the JAC ticket.

              • Icon: Bug Bug
              • Resolution: Fixed
              • Icon: Highest Highest
              • 2.2.5, 2.3.8, 2.4.2
              • None
              • None
              • None

                We have identified and fixed a cross-site scripting (XSS) vulnerability in FishEye charts.

                Affected versions are FishEye 2.2.0 to 2.4.0 inclusive.

                XSS vulnerabilities potentially allow an attacker to embed their own JavaScript into a FishEye/Crucible page. You can read more about XSS attacks at various places on the web, including these:

                This issue is reported in our security advisory on these pages:

                        Unassigned Unassigned
                        alui Andrew
                        Votes:
                        0 Vote for this issue
                        Watchers:
                        1 Start watching this issue

                          Created:
                          Updated:
                          Resolved:

                            Unassigned Unassigned
                            alui Andrew
                            Affected customers:
                            0 This affects my team
                            Watchers:
                            1 Start watching this issue

                              Created:
                              Updated:
                              Resolved: