As the application allows a valid user to insert java script in the announcement banner which is redirecting to some other site.
Eg: Welcome<script>window.location.href='some other site'</script>
I want to prevent this injection in announcement banner. Need help on this. Version of jira is 7.0 .