Apache Log4j vulnerability on JIRA Software v8.8.0

Tan Mok Kooi December 19, 2021

Hi all,

I'm using JIRA software v8.8.0, I would like to know whether there's any threat of the
Apache Log4j vulnerability on JIRA Software v8.8.0?

My JIRA web address is in the form "http://10.xxx.x.xxx:xxxx/secure/Dashboard.jspa",

I suppose I don't use cloud server..

in that case, is there any threat of this Log4j vulnerability ?
can anyone help me ?

Regards,

1 answer

2 votes
Vishwas
Rising Star
Rising Star
Rising Stars are recognized for providing high-quality answers to other users. Rising Stars receive a certificate of achievement and are on the path to becoming Community Leaders.
December 20, 2021

Hi @Tan Mok Kooi 

Welcome to Atlassian Community !!

Jira Software Self Hosted is not affected by this vulnerability.

Bitbucket server/Data Centre is the affected product by this CVE.

Please go through this link to find out more https://confluence.atlassian.com/security/multiple-products-security-advisory-log4j-vulnerable-to-remote-code-execution-cve-2021-44228-1103069934.html

Regards,

Vishwas

Suggest an answer

Log in or Sign up to answer