Jira tickets could potentially be abused for prompt injection when support staff use AI to help handle issues. This “living off AI” proof-of-concept (PoC) attack targeting Atlassian’s Model Context Protocol (MCP) and Jira Service Management (JSM) was demonstrated by Cato Networks in a blog post Thursday.
Source: SC Magazine