It's not the same without you

Join the community to find out what other Atlassian users are discussing, debating and creating.

Atlassian Community Hero Image Collage

cross-site scripting vulnerability

I recently read about two vulnerabilities in Confluence: CVE-2015-8398 and CVE-2015-8399 that were apparently fixed in version 5.8.17. 

 

Were these vulnerabilities in the SaaS version of the product, or only the on-site/company hosted version of the product?

 

2 answers

1 accepted

2 votes
Answer accepted

They were on some releases of Cloud, but Cloud is updated regularly and frequently, and it was upgraded well before these vulnerabilities were announced.

Thanks for the quick reply, Nic!

Do the cloud version and the in-house version share the same version/release numbering scheme?

It's not identical, because the Cloud versions need some tweaks that take them away from the main branch. But those tweaks are purely to do with running it as a Cloud service. You'll see different build numbers (and Cloud versions will have the old "OD" in there to indicate that they're Cloud), but if someone says "Confluence 5.8.17", then it doesn't matter if it's Cloud or Server, it'll be the same (ok, until someone adds add-ons...)

Ahh. Thanks for clearing that up!

Suggest an answer

Log in or Sign up to answer
This widget could not be displayed.
This widget could not be displayed.
Community showcase
Published Thursday in Confluence

Confluence CVEs and common questions

Two vulnerabilities have been published for Confluence Server and Data Center recently: March 20, 2019 CVE-2019-3395 / CVE-2019-3396 April 17, 2019 CVE-2019-3398 The goal of this article is...

354 views 0 12
Read article

Atlassian User Groups

Connect with like-minded Atlassian users at free events near you!

Find a group

Connect with like-minded Atlassian users at free events near you!

Find my local user group

Unfortunately there are no AUG chapters near you at the moment.

Start an AUG

You're one step closer to meeting fellow Atlassian users at your local meet up. Learn more about AUGs

Groups near you