You're on your way to the next level! Join the Kudos program to earn points and save your progress.
Level 1: Seed
25 / 150 points
Next: Root
1 badge earned
Challenges come and go, but your rewards stay with you. Do more to earn more!
What goes around comes around! Share the love by gifting kudos to your peers.
Keep earning points to reach the top of the leaderboard. It resets every quarter so you always have a chance!
Join now to unlock these features and more
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-24998
https://nvd.nist.gov/vuln/detail/CVE-2023-24998
Still waiting for an "Official" response from Atlassian.
We've found the library present in Jira DC and Bamboo installs. In searching Atlassian.com it seems like the BitBucket team are the only ones to address this CVE to date.
Unofficial response since it's coming from me...
I opened a support ticket and was informed that Jira 9.6.1, 9.7 and LTS 9.4.4 should include a fix (upgraded Tomcat).
Just in case other folks are looking for more information. :)