Hi,
We received the email from Atlassian about the vulnerability and we are unable to upgrade our version right away.
We have disabled the Contact Administrators Form option in settings as a quick work around.
But we are unsure if we run on Apache Tomcat. Assuming we don't, where do we disable the sendbulkmail endpoint.