Forums

Articles
Create
cancel
Showing results forΒ 
Search instead forΒ 
Did you mean:Β 

πŸ“Œ Multiple Products Security Advisory - CVE-2022-26136, CVE-2022-26137

This week Atlassian released an advisory detailing new CVEs affecting multiple Atlassian products, including Jira and Confluence.

Learn more: https://confluence.atlassian.com/security/multiple-products-security-advisory-cve-2022-26136-cve-2022-26137-1141493031.html

🌀 Atlassian Cloud products are not affected, per the advisory.

Another day, another CVE, am I right? Stay diligent, and happy patching. πŸ”’

5 comments

Robert Wen_Cprime_
Community Champion
July 21, 2022

There was another CVE released that won't affect as many people, but if affected, you should pay attention.  

CVE-2022-26138 affects those that have Questions for Confluence installed.  Older versions created an account with a hardcoded password.  Uninstalling the app won't delete the account.

Details are here: https://confluence.atlassian.com/doc/questions-for-confluence-security-advisory-2022-07-20-1142446709.html

Like β€’ # people like this
Dave Liao
Community Champion
July 21, 2022

@Robert Wen_Cprime_ good highlight, thanks for mentioning that! πŸ’ͺ 

Like β€’ # people like this
Taranjeet Singh
Community Champion
July 22, 2022

Thank you, @Dave Liao and @Robert Wen_Cprime_ for sharing the infirmation about these security vulnerabilities.

Like β€’ # people like this
Dave Liao
Community Champion
July 22, 2022

@Taranjeet Singh - anytime, we've got to protect our users!

Like β€’ Robert Wen_Cprime_ likes this
Robert Wen_Cprime_
Community Champion
July 22, 2022

You're welcome, @Taranjeet Singh !  Happy to help!

Comment

Log in or Sign up to comment
TAGS
AUG Leaders

Atlassian Community Events