FYI SSL/TLS vulnerability: https://freakattack.com
Chrome is already patched so suggest you update.
Safari patch should be available this week.
There are also tools to test if HTTPS server is vulnerable. I will check my JSS and post results back.
Apologies if this is a duplicate post, could not find anything with a quick search.
As an update I checked the default tomcat configuration on the JSS and the following ciphers are listed for the JSS port. As none show 'EXPORT' in the name I think this means it is not vulnerable.
ciphers="TLS_RSA_WITH_AES_128_CBC_SHA, TLS_DHE_RSA_WITH_AES_128_CBC_SHA, TLS_DHE_DSS_WITH_AES_128_CBC_SHA, SSL_RSA_WITH_3DES_EDE_CBC_SHA, SSL_DHE_RSA_WITH_3DES_EDE_CBC_SHA, SSL_DHE_DSS_WITH_3DES_EDE_CBC_SHA"
I don't currently run any JDS servers so have not checked these.