Just a heads up: On March 24, 2025, starting at 4:30pm CDT / 21:30 UTC, the site will be undergoing scheduled maintenance for a few hours. During this time, the site might be unavailable for a short while. Thanks for your patience.

×

Forums

Articles
Create
cancel
Showing results for 
Search instead for 
Did you mean: 

Security concerns with Jira Server REST API

Alexis Baker July 15, 2020

Hi,

Recently our security team ran an audit on Jira, and found security concerns with Jira  Server REST API itself. We deactivated it, thus solving the issue. However we would like to reactivate it without the security concerns. Are there any suggestions on how to remove this security concern?

 

Thanks,

Alexis

1 answer

1 accepted

0 votes
Answer accepted
Milan Chheda [INFOSYSTA]
Rising Star
Rising Star
Rising Stars are recognized for providing high-quality answers to other users. Rising Stars receive a certificate of achievement and are on the path to becoming Community Leaders.
July 15, 2020

Hello @Alexis Baker

Without knowing the security concerns raised by your security team, it's difficult to suggest/recommend anything. If possible, share the concerns as that would make it easier for everyone to understand the problem and provide better solution to your question.

Also separately, I would recommend you as well security team to go through Security@Atlassian.

 

Thanks,
Milan

Alexis Baker July 15, 2020

Thanks Milan, 

Appreciate your reply. I am unsure as if it is safe to publish these details in here! So I have raised a support ticket with more information in.

 

Thanks,

Alexis 

Milan Chheda [INFOSYSTA]
Rising Star
Rising Star
Rising Stars are recognized for providing high-quality answers to other users. Rising Stars receive a certificate of achievement and are on the path to becoming Community Leaders.
July 15, 2020

Great. That sounds perfect. If the above link doesn't provide the required information then raising a support ticket is the best thing to do.

Suggest an answer

Log in or Sign up to answer
DEPLOYMENT TYPE
SERVER
VERSION
8.3.0
TAGS
AUG Leaders

Atlassian Community Events