-
Bug
-
Resolution: Fixed
-
High (View bug fix roadmap)
-
7.6.0, 7.7.0, 7.8.0, 7.9.0
-
7.06
-
Severity 2 - Major
-
The version of the bundled Atlassian Universal Plugin Manager plugin had a cross site scripting vulnerability (XSS). See https://ecosystem.atlassian.net/browse/UPM-5871 for more details.
- is related to
-
BAM-19786 The bundled Atlassian Universal Plugin Manager plugin had a XSS issue - CVE-2018-5229
-
- Closed
-
-
CONFSERVER-55237 The bundled Atlassian Universal Plugin Manager plugin had a XSS issue - CVE-2018-5229
-
- Closed
-
-
UPM-5871 XSS through user requested add-on names - CVE-2018-5229
- Done
- was cloned as
-
BSERV-10606 The bundled Atlassian Universal Plugin Manager plugin had a XSS issue - CVE-2018-5229
-
- Closed
-
- mentioned in
-
Page Failed to load
[JRASERVER-66748] The bundled Atlassian Universal Plugin Manager plugin had a XSS issue - CVE-2018-5229
Remote Link | Original: This issue links to "UPM-5871 (Ecosystem Jira)" [ 377926 ] | New: This issue links to "UPM-5871 (Ecosystem JIRA)" [ 377926 ] |
Fixed in Enterprise Release/s | New: [Download 7.6|https://confluence.atlassian.com/enterprise/atlassian-enterprise-releases-948227420.html] |
Minimum Version | New: 7.06 |
Component/s | New: UPM [ 10870 ] | |
Component/s | Original: Plugin Manager [ 46079 ] |
Workflow | Original: JAC Bug Workflow v2 [ 2848534 ] | New: JAC Bug Workflow v3 [ 2919285 ] |
Status | Original: Resolved [ 5 ] | New: Closed [ 6 ] |
Symptom Severity | Original: Major [ 14431 ] | New: Severity 2 - Major [ 15831 ] |
Workflow | Original: JIRA Bug Workflow w Kanban v7 - Restricted [ 2598452 ] | New: JAC Bug Workflow v2 [ 2848534 ] |
Summary | Original: The bundled Atlassian Universal Plugin Manager plugin had an XSS issue - CVE-2018-5229 | New: The bundled Atlassian Universal Plugin Manager plugin had a XSS issue - CVE-2018-5229 |
Security | Original: Reporter and Atlassian Staff [ 10751 ] |
Labels | Original: cvss-high patch-management raid security | New: advisory advisory-released cvss-high patch-management raid security |