-
Type:
Bug
-
Resolution: Fixed
-
Priority:
High
-
Affects Version/s: 4.1
-
Component/s: Issue - Actions
-
4.01
Thanks to NASA / JPL for discovering this:
Cross-Site Scripting (XSS) related to http://oursite/jira/includes/snippets/issuelinksmall.jsp?%22%3E%3Cscript%3Ealert%28%22XSS%22%29%3C/script%3E=has
- duplicates
-
JRASERVER-21022 issuelinkssmall.jsp has an XSS hole via the URL used to access it
-
- Closed
-