-
Type:
Bug
-
Resolution: Fixed
-
Priority:
Low
-
Affects Version/s: Available in Jira Cloud, 7.10.1, 7.10.2
-
Component/s: Navigation - Search
-
7.1
-
Severity 2 - Major
Affected versions of Atlassian Jira Server and Data Center allow remote attackers to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability in Issue Navigator Basic Search.
Affected versions:
- version < 7.13.9
- 8.0.0 ≤ version < 8.4.2
Fixed versions:
- 7.13.9
- 8.4.2
- 8.5.0