CyberNotableReported
5.6
Atlassian patches arbitrary file access flaw CVE-2026-21589
SANS Internet Storm CenterLO·about 23 hours ago
A critical, unauthenticated vulnerability (CVE-2026-21589) in Atlassian products (Jira, Confluence, Bitbucket) is being actively exploited following public release of a proof-of-concept. The flaw allows remote code execution without authentication, posing a significant risk to enterprise environments. Immediate patching is critical, but the full scope of exploitation remains unclear.