CVE
CVE-2026-21589
- First Reported
- Oct 6, 2026
- Latest Reported
- Oct 7, 2026
Reported Context (2)
- A critical vulnerability (CVE-2026-21589) affecting multiple Atlassian product families, including Jira, Confluence, and Bitbucket, is being exploited in attacks that do not require authentication. Hackers exploit critical unauthenticated Atlassian flaw after public PoC
- Atlassian is warning customers of a critical vulnerability, tracked as CVE-2026-21589, that can be exploited for arbitrary file-access in multiple self-hosted Data Center products, including Confluence, Jira, and Atlassian Warns of Critical File-Access Flaw in Jira, Confluence
People (1)
MITRE ATT&CK (2)
Vendors (2)
Products (8)
Tools (1)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.