Atlassian released advisories for both these vulnerabilities that outline various details including the affected product versions, summary, and fixed product versions.
Information disclosure vulnerability
Tracked as CVE-2019-14994, the information disclosure vulnerability affected Jira Service Desk and Jira Service Desk Data Center.
Remote code execution vulnerability
Tracked as CVE-2019-15001, this vulnerability affects Jira Server and Jira Data Center.
The solution
It is recommended that you update to the latest versions of the software available. If immediate update is not possible there are temporary solutions.
Publisher