CyberNotableReported
5.1
Atlassian Patches Critical Flaw Across 8 Products; Unauthenticated File Access Risk
SecurityWeekLO·US·1 day ago
Atlassian disclosed a critical vulnerability (CVE-2026-21589) enabling arbitrary file access in self-hosted Data Center products, including Confluence, Jira, and Bitbucket. Exploitation could expose sensitive data or lead to further compromise. The flaw is unpatched for some products, and active exploitation is not yet confirmed.