All,
I'm managing JIRA 6.4 and i got the vulnerability below from security.
Affects all Firefox users.
vulnerable to a Cross-Site Scripting (XSS) attack which is a type of injection where malicious scripts are injected into otherwise benign and trusted web sites.
vulnerable plugin:
plugins/servlet/social/rpc