CVE-2021-26085: medium-severity vulnerability in Atlassian Confluence Server
Published · Updated
Patch now. It under exploitation confirmed by CISA and has a working public exploit.
Apply updates per vendor instructions.
Atlassian Confluence Server has a vulnerability that allows attackers to read files they shouldn't have access to by exploiting the /s/ endpoint. This means sensitive information could be exposed without proper authentication.
A pre-authorization arbitrary file read vulnerability exists in the /s/ endpoint of Confluence Server versions before 7.4.10 and 7.5.0–7.12.2, allowing unauthenticated remote attackers to bypass access controls and retrieve restricted files. The vulnerability stems from insufficient authorization checks on file retrieval operations, potentially exposing sensitive configuration or user data.
The full analysis of this CVE is available in Portuguese →
In the same product, most dangerous first.