Summary
Atlassian has a multi-faceted approach to vulnerability management that includes continuous asset discovery and attribution, vulnerability detection tools, customer and user reports, external penetration testing, product security team, and red team.
1
Additionally, there is a list of security vulnerabilities that can be found in the /secure/admin/ViewInstrumentation.jspa endpoint, which includes CVSS scores, vulnerability details, and links to full CVE details and references.
2
According to