XSS Vulnerability in Administration Interface of JIRA Bamboo Plugin

XMLWordPrintable

    • 4.03

      We have identified and fixed a cross-site scripting (XSS) vulnerability in JIRA administration interface.

      Affected version is JIRA 4.3.x

      XSS vulnerabilities potentially allow an attacker to embed their own JavaScript into a JIRA page. You can read more about XSS attacks at various places on the web, including these:

      This issue is reported in our security advisory on this page:

      Updates for JIRA Bamboo Plugin are at https://plugins.atlassian.com/plugin/details/4946

        1. jira-bamboo-plugin-4.1.5.jar
          122 kB
          VitalyA
        2. jira-bamboo-plugin-4.2.1.jar
          89 kB
          VitalyA

              Assignee:
              VitalyA
              Reporter:
              Peter Leschev
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

                Created:
                Updated:
                Resolved: