Create
cancel
Showing results for 
Search instead for 
Did you mean: 
Sign up Log in

Updated JRASERVER-71559 (CVE-2020-36289) 14/Sep/2021

David Oh October 18, 2021

Item was updated and Nessus plugin updated as well.  We're running 8.18.1 which should meet the greater than 8.17 version.  But we're hitting scan results on this finding.  Is there a way to find out if the 8.18 is actually vulnerable?  And what is the recommend update for 8.18.1?

1 answer

1 accepted

0 votes
Answer accepted
Daniel Eads
Atlassian Team
Atlassian Team members are employees working across the company in a wide variety of roles.
October 21, 2021

Hi @David Oh ,

Jira 8.18.1 is a fixed version for CVE-2020-36289, per the information on JRASERVER-71559 . The advisory database for Nessus also indicates Jira 8.18.1 should pass this check.

My recommendation would be to reach out to Tenable support and see if they can check the parameters for this particular Nessus scan.

Cheers,
Daniel | Atlassian Community Support

Suggest an answer

Log in or Sign up to answer
DEPLOYMENT TYPE
SERVER
TAGS
AUG Leaders

Atlassian Community Events