chiprook
← Security
SecurityOctober 6, 2026, 11:20

Atlassian warns of critical file access flaw in datacenter products

Atlassian disclosed CVE-2026-21589, a 9.3-rated arbitrary file access vulnerability affecting datacenter versions of Bitbucket, Confluence, Jira, Bamboo, Crowd, Crucible and Fisheye. Patches are available; users who cannot upgrade immediately are advised to block external access to their instances.

Atlassian warns of critical file access flaw in datacenter products
#Atlassian#Bitbucket#Confluence#Jira
Read next
Security

MCP Atlassian Falls Back to Operator Credentials Without Verified Identity

Software

Atlassian opens Jira Automation Rules management API

Security

ZoomEye: 1.8M Confluence matches depend on which fingerprint you use

Software

Bitbucket app passwords removal: what breaks