User Authentication can be bypassed if you have an old JSESSIONID

jmsantam June 25, 2013

1 answer

0 votes
John Chin
Atlassian Team
Atlassian Team members are employees working across the company in a wide variety of roles.
July 11, 2013

Hi there,

Yes, you can configure to use SSL/HTTPS to prevent this hijacking problem happen. There is a bug ticket regarding the problem here, please see CWD-1040. As mentioned by our collegues, please click here.

Suggest an answer

Log in or Sign up to answer