PoC Archive PoC Archive

tag

Confluence

  • CVE-2026-27825 web CRITICAL 9.3

    mcp-atlassian Path Traversal via confluence_upload_attachment (CVE-2026-27825)

    The confluenceuploadattachment MCP tool in mcp-atlassian passes its filepath argument straight into open(filepath, "rb") with no path validation, letting an attacker read arbitrary files on the server's filesystem and exfiltrate them via a multipart upload to…

    Patched 2026-07-05
  • CVE-2023-22527 web CRITICAL 10 KEV Ransomware EPSS 100%

    Confluence SSTI RCE - CVE-2023-22527

    CVE-2023-22527 is a CVSS 10.0 unauthenticated Remote Code Execution vulnerability in Atlassian Confluence Data Center and Server. The vulnerability is a Server-Side Template Injection (SSTI) in the Velocity/Freemarker template engine, reachable via the…

    Patched 2026-05-17
  • CVE-2024-21683 web HIGH 8.3 EPSS 88%

    Confluence Post-Auth RCE - CVE-2024-21683

    CVE-2024-21683 is an authenticated Remote Code Execution vulnerability in Atlassian Confluence Data Center and Server affecting the "Add a New Language" feature in the Code Macro plugin. An authenticated Confluence administrator can upload a malicious .js…

    Unverified 2026-05-17