Hi JIRA community.
I look after a JIRA Server instance. We recently upgraded to v7.13.0(LTS).
As part of the process our security department uses a tool and scans my test system.
The tool reported what it calls a vulnerability, saying it caused a large amount of "code" to be transferred to the browser. The name of the code is batch.js.
From the reading I've done, this seems like a pretty common piece of code, that regularly loads into the browers to facilitate some page functionality
I am hoping I can write this off as a "false positive" from the testing tool, and does not constitue a security exposure.
If anyone knows what batch.js is, or if it might contain sensitve data as a result of user activity could you please let me know?
Thanks,
Steve