Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

In Confluence page, header layout was static but now adjusts smoothly to various screen sizes. On mobile devices, it has a clean layout with links, buttons, a subscribe button, and an edit page feature.

Bug Fixes (blue star)

Fixed Integration issue
Status
colourGreen
titleFIXED

We’ve resolved a bug where data from Jira embedded on Confluence pages wasn't functioning correctly when using custom domains.

Jira Legacy
serverSystem Jira
serverIdb66650ca-af1e-397f-81f5-9d94924a0a26
keyESFC-755

...

Jira Legacy
serverSystem Jira
serverIdb66650ca-af1e-397f-81f5-9d94924a0a26
keyESFC-752746

Jira Legacy
serverSystem Jira
serverIdb66650ca-af1e-397f-81f5-9d94924a0a26
keyESFC-750738

Bug Fixes (blue star)

Fixed incorrect characters in page
Status
colourGreen
titleFIXED

Resolved an issue where page names in the Activity Tab appeared with incorrect characters, such as "@". Additionally, the dropdown menu was non-functional, preventing users from selecting page suggestions. Both issues have been addressed.

Jira Legacy
serverSystem Jira
serverIdb66650ca-af1e-397f-81f5-9d94924a0a26
keyESFC-746-752

Resolved unauthorized access to private space activity logs
Status
colourGreen
titleFIXED

Fixed a vulnerability where lower-privileged users could access the activity logs of private space shares, potentially exposing sensitive information. Access controls have been strengthened to ensure that only authorized users can view this data.

Jira Legacy
serverSystem Jira
serverIdb66650ca-af1e-397f-81f5-9d94924a0a26
keyESFC-745750

Fixed cross-tenant vulnerability allowing regeneration of external share secrets
Status
colourGreen
titleFIXED

Addressed a security issue where attackers could regenerate unlock secrets for external shares belonging to another tenant, causing JWT tokens to become invalid. This issue has been corrected.

Jira Legacy
serverSystem Jira
serverIdb66650ca-af1e-397f-81f5-9d94924a0a26
keyESFC-744745

Fixed open redirect vulnerability
Status
colourGreen
titleFIXED

A vulnerability allowing attackers to redirect users to malicious websites using the data parameter in the login URL has been patched. This closes the loophole for phishing attacks through external share login redirects.

Jira Legacy
serverSystem Jira
serverIdb66650ca-af1e-397f-81f5-9d94924a0a26
keyESFC-743-744

Resolved stored XSS in API Key Usage page via User-Agent header
Status
colourGreen
titleFIXED

Fixed a stored XSS vulnerability where an attacker could inject malicious payloads into HTTP headers on the API Key Usage page. The vulnerability has been mitigated to prevent arbitrary JavaScript execution in the administrator’s browser.

Jira Legacy
serverSystem Jira
serverIdb66650ca-af1e-397f-81f5-9d94924a0a26
keyESFC-742743

Fixed infinite loading screen when exporting CSV from Global Settings
Status
colourGreen
titleFIXED

Resolved an issue where attempting to export a CSV file from the global settings page would result in an infinite loading screen. This was caused by the system trying to download too many Confluence pages at once. The export limit has been reduced from 500 to 100 pages, ensuring smooth CSV exports.

Jira Legacy
serverSystem Jira
serverIdb66650ca-af1e-397f-81f5-9d94924a0a26
keyESFC-738742

Fixed external shared link being cut off in edit mode
Status
colourGreen
titleFIXED

Addressed a display issue where inserting an external share URL in edit mode would cause the URL window to be cut off. The window is now fully visible during editing.

Jira Legacy
serverSystem Jira
serverIdb66650ca-af1e-397f-81f5-9d94924a0a26
keyESFC-723

Fixed jittering in the comment tab on shared pages
Status
colourGreen
titleFIXED

Solved an issue where the comment tab would jitter on shared pages. The tab now loads smoothly, and improvements were made to prevent white flashes when loading the edit view, particularly in dark mode.

Jira Legacy
serverSystem Jira
serverIdb66650ca-af1e-397f-81f5-9d94924a0a26
keyESFC-393

...