Come for the products,
stay for the community

The Atlassian Community can help you and your team get more value out of Atlassian products and practices.

Atlassian Community about banner
4,359,839
Community Members
 
Community Events
168
Community Groups

Bolding or changing text color in Description adds HTML code

When creating a new story (in the cloud version of JIRA), and adding bold or colored text to the Description field, html code is input during my entry of text. 

For example, I bolded the word 'Summary' and changed the text below it to green, this is what happens:  

*Summary:*
{color:#14892c}A minimal operations hardware and firmware prototype system needed. {color}

For many of my users who are not software savvy don't understand why this happens.  I'm assuming it is because we are on the cloud using a browser.  Does anyone else see this being an issue or have a workaround?

 

Thank you,

Judy

1 comment

One of the changes Atlassian introduced in Jira Cloud is to close the security vulnerability where you could add HTML code and/or URLs in a field description, which would make the Jira Cloud server run arbitrary (and possibly malicious) code or redirect to sites with malware.

What they should do IMO is to allow the description to be a wiki-style render-able (like big text fields), including static images - but no HTML or URLs.

Since Jira already supports uploading images to the user's avatar, to project's avatar, and to issue type's avatar, the foundation is already there.

Comment

Log in or Sign up to comment
TAGS
Community showcase
Published in Jira Software

An update on Jira Software customer feedback – June 2022

Hello Atlassian Community! Feedback from customers like you has helped us shape and improve Jira Software. As Head of Product, Jira Software, I wanted to take this opportunity to share an update on...

4,962 views 18 31
Read article

Atlassian Community Events