Posts Tagged ‘arbitrary file access’
Atlassian File Access Vulnerability in Data Center
The Atlassian file access vulnerability CVE-2026-21589 (CVSS 9.3) lets an unauthenticated attacker read files from the web root of eight self-hosted products: Jira Software, Jira Service Management, Confluence, Bitbucket, Bamboo, Crowd, Crucible and Fisheye. Every version is affected until it is upgraded. No exploitation has been reported so far, and the patched releases are out.…
Read More
