Security Bulletin 05/2025 investigating

Incident Report for Communardo Service Center

Resolved

Dear customers,

after a thorough analysis, we recommend installing a minor update to the affected systems Jira Core & Jira Service Management and consider the update for Bamboo, Confluence, Jira Software & Fisheye/Crucible to be optional. We assessed the risk for Jira Core and Jira Service Management as "medium to high" and for Bamboo, Confluence, Jira Software & Fisheye/Crucible as "low".

You can find all the information regarding the fixed versions for your system in the post: https://confluence.atlassian.com/security/security-bulletin-may-20-2025-1561365992.html

Additional information:
* The fixed version of Jira 10.3 was released in March and has already been applied to many systems.
* The fixed version of Jira 9.12 was released in April and has already been applied to many systems.

If we are hosting your systems or proactively update your applications, we will directly communicate any information via the opened tickets (which have been created in the meantime) in our service center.

In case you have additional questions, please open a request in our Communardo Service Center:
https://communardo.atlassian.net/servicedesk/customer/portal/6

Best regards,
Your Communardo Team
Posted May 21, 2025 - 11:59 CEST

Investigating

Dear customers,

we are currently evaluating Atlassian's latest Security Bulletin:
https://confluence.atlassian.com/security/security-bulletin-may-20-2025-1561365992.html

Affected Applications:
Bamboo, Confluence, Jira, Crucible/Fisheye

We will update this post as soon as we have finalized the analysis.

If we are hosting your systems or if we proactively update your applications, we will open a Ticket soon.

In case you have additional questions, please open a request in our Communardo Service Center:
https://communardo.atlassian.net/servicedesk/customer/portal/6

Best Regards,
Your Communardo Team
Posted May 20, 2025 - 21:41 CEST
This incident affected: Atlassian-Security (Security Status Bamboo, Security Status Confluence, Security Status Crucible/Fisheye, Security Status Jira).