I want to use Text gadget in jira to write some text and link websites on my dashboard But It says, Enabling text gadget makes jira instance vulnerable to XSS attacks. Is that okay to enable the text gadget on 7.12.3? Is that vulnerability still there?
My assumption is, the vulnerability still would be there irrespective of jira version since it may contains plain HTML code. Please confirm.