Uploaded image for project: 'Jira Data Center'
  1. Jira Data Center
  2. JRASERVER-74896

Update/Remediate/Remove Vulnerable JavaScript Libraries

XMLWordPrintable

    • 0
    • We collect Jira feedback from various sources, and we evaluate what we've collected when planning our product roadmap. To understand how this piece of feedback will be reviewed, see our Implementation of New Features Policy.

      We are a DoD customer who utilizes docker images released by Atlassian to DockerHub and update them on a regular basis.  In order for our service desk to be granted "go-live" status by our cyber security organizations, regular and exhaustive scanning takes place and a plan must be established to remediate security vulnerabilities found on those scans.

      During the most recent scan, jira-servicemanagement returned 11 "medium" vulnerabilities - 8 resulting from third-party javascript libraries and 3 from "detailed error messages revealed" when unhandled java exceptions occur.

      We want to request remediations to these vulnerabilities and can provide details as necessary if the request is feasible to be addressed by Atlassian.

              Unassigned Unassigned
              f53da4e7a7c3 Christopher Pazdersky
              Votes:
              1 Vote for this issue
              Watchers:
              3 Start watching this issue

                Created:
                Updated: