Forums

Articles
Create
cancel
Showing results for 
Search instead for 
Did you mean: 

Outdated Moment.js in Jira Server (CVE-2017-18214, CVE-2016-4055)

Pavan Nayak August 30, 2022

We are getting this vulnerability on jira server version 8.13.22 that is installed in our current environment. May i know the workaround or any other remedies to resolve this vulnerability

1 answer

0 votes
Nic Brough -Adaptavist-
Rising Star
Rising Star
Rising Stars are recognized for providing high-quality answers to other users. Rising Stars receive a certificate of achievement and are on the path to becoming Community Leaders.
August 30, 2022

Welcome to the Atlassian Community!

You will need to upgrade Jira to the version recorded in the fix - https://jira.atlassian.com/browse/JRASERVER-73244

Pavan Nayak August 30, 2022

Is that the only solution? there is not workaround for this current version? 8.13.22 is the latest version we are using for 8.13 instance.

Nic Brough -Adaptavist-
Rising Star
Rising Star
Rising Stars are recognized for providing high-quality answers to other users. Rising Stars receive a certificate of achievement and are on the path to becoming Community Leaders.
August 30, 2022

Yes, you can't just rip a load of libraries out of a system and replace them with newer ones.  You do that in new refactored (and hence tested) systems.

Suggest an answer

Log in or Sign up to answer
DEPLOYMENT TYPE
CLOUD
PRODUCT PLAN
FREE
TAGS
AUG Leaders

Atlassian Community Events