Version 4.0.0

Release Notes

KeyTypeStatusSummaryDescriptionAffects versionsFixversionsSCFB-49ClosedBitbucket 8.0 compatibilityPull Request Task interface adapted to the Task API of Bitbucket 8.x.


Known Bugs

KeyTypeStatusSummaryDescriptionAffects versionsFixversionsSCFB-53ClosedFixing the vulnerability CVE-2024-57699Please update to the version 5.0.1. Because this version contains the vulnerability CVE-2024-57699. This vulnerability occurs because the library json-smart-2.5.1.jar which was shipped and used in earlier versions. This version contains json-smart-2.5.2.jar.SCFB-51ClosedFixing the vulnerability CVE-2023-1370Jira actions are performed with a JSON payload. In this case the libray "net.minidev-json-smart", which is affected by CVE-2023-1370, was used to create this payload. However, the critical functionality had no negative impact on the add-on. Nevertheless, the library was updated.