CVE-2026-21586: Atlassian disclosed a high-severity improper authorization flaw (CVSS 7.1) in Confluence Data Center. An authenticated attacker can gain unintended access to resources or functionality

CVE-2026-21586: Atlassian disclosed a high-severity improper authorization flaw (CVSS 7.1) in Confluence Data Center. An authenticated attacker can gain unintended access to resources or functionality. Fixed in versions 9.2.24 and 10.2.17 and later. No in-the-wild exploitation is confirmed. https://www. cve.org/CVERecord?id=CVE-2026- 21586 # infosec # cybersecurity

1 reportother

Claim audit

No BS check run yet — press ⚖ to extract this story's claims and verify them against independent sources.

All coverage

CVE-2026-21586: Atlassian disclosed a high-severity improper authorization flaw (CVSS 7.1) in Confluence Data Center. An authenticated attacker can gain unintended access to resources or functionality

mastodon:infosec-exchangeother14d ago kagi ↗

CVE-2026-21586: Atlassian disclosed a high-severity improper authorization flaw (CVSS 7.1) in Confluence Data Center. An authenticated attacker can gain unintended access to resources or functionality. Fixed in versions 9.2.24 and 10.2.17 and later. No in-the-wild exploitation is confirmed. https://www. cve.org/CVERecord?id=CVE-2026- 21586 # infosec # cybersecurity