It's not the same without you

Join the community to find out what other Atlassian users are discussing, debating and creating.

Atlassian Community Hero Image Collage

Sensitive Data Exposure issue reported by Fortify tool Edited

Hello,

Need help to resolve A3: Sensitive Data Exposure issue reported by fortify tool.

Detail below:

login.jsp, line 49 (Password Management: Password in HTML Form)

Populating password fields in an HTML form could result in a system compromise.

login.jsp:49 null()
47 rcbNo : <input type="text" name="rcbNo" value="rcb">
48 <br>
49 pwd : <input type="password" name="pwd" value="password">
50 <br>
51 designation : <input type="text" name="designation" value="abc">


Many folks suggested to suppress the issue and mark as "not an issue".

Is this the only way to address this issue?

Please provide suitable solution if any. Thanks in advance. :) 

1 answer

0 votes
nic Community Leader Mar 26, 2019

I would move to https (any system you enter data into should be on https nowadays)

Hi Nic,
Yes, application is on https itself.

Suggest an answer

Log in or Sign up to answer
Community showcase
Posted in Jira

Calling all Jira Cloud users! Give us feedback on our exploration of a new navigation.

Hi everyone! My name’s Matt and I’m a product manager at Atlassian. I work in the navigation & findability space for all our Jira Cloud products. We’ve been working on trying to improve the exp...

1,245 views 20 13
Join discussion

Community Events

Connect with like-minded Atlassian users at free events near you!

Find an event

Connect with like-minded Atlassian users at free events near you!

Unfortunately there are no Community Events near you at the moment.

Host an event

You're one step closer to meeting fellow Atlassian users at your local event. Learn more about Community Events

Events near you