Come for the products,
stay for the community

The Atlassian Community can help you and your team get more value out of Atlassian products and practices.

Atlassian Community about banner
4,300,000
Community Members
 
Community Events
165
Community Groups

CVE-2022-26134 on confuence version 6.15

What is the impact and how to resolve the 

CVE-2022-26134 - Critical severity unauthenticated remote code execution vulnerability on Confluence version 6.15.2

3 answers

Atlassian updated that security advisary on 10/Jun as 

For Confluence 6.0.0 - Confluence 7.14.2

If you run Confluence in a cluster, you will need to repeat this process on each node. You don't need to shut down the whole cluster to apply this mitigation.

....

0 votes
IT Sec I'm New Here Jun 09, 2022

Hello, @Fabio Racobaldo _Herzum_ 

+1, I also have version 6.15.*
How to fix CVE-2022-26134?
Can you test the fix (For Confluence 7.0.0 - Confluence 7.14.2) for version 6.15.* please?

Thank you.

0 votes

Hi @Sujit Dash ,

as explained here https://confluence.atlassian.com/doc/confluence-security-advisory-2022-06-02-1130377146.html you should upgrade your instance to one of the version with a fix (7.4.17, 7.13.7, 7.14.3, 7.15.2, 7.16.4, 7.17.4 and 7.18.1).

If you can't, the workaround suggested (For Confluence 7.0.0 - Confluence 7.14.2) has not been fully tested for unsupported versions like 6.15.2

Hope this helps,

Fabio

Is there any plan to test it on unsupported versions like 6.15.2?

Like IT Sec likes this

Suggest an answer

Log in or Sign up to answer
TAGS
Community showcase
Published in Confluence

An update on Confluence Cloud customer feedback – June 2022

Hi everyone, We’re always looking at how to improve Confluence and customer feedback plays an important role in making sure we're investing in the areas that will bring the most value to the most c...

334 views 2 7
Read article

Community Events

Connect with like-minded Atlassian users at free events near you!

Find an event

Connect with like-minded Atlassian users at free events near you!

Unfortunately there are no Community Events near you at the moment.

Host an event

You're one step closer to meeting fellow Atlassian users at your local event. Learn more about Community Events

Events near you