-
Bug
-
Resolution: Fixed
-
Low
-
4.8.0
-
Severity 2 - Major
-
The review resource in Atlassian Fisheye and Crucible before version 4.8.1 allows remote attackers to inject arbitrary HTML or Javascript via a cross site scripting (XSS) vulnerability through the review objectives.