Hello,
we have bought a license for Confluence server, but since Atlassian ended the development of this product, we do not pay the maintenance anymore.
Recently, it has come to our knowledge that there is a critical security bug in your product, addressable as CVE-2021-26084, which could cause severe damage to our company.
It is not possible for us to upgrade to newer version not we want or can migrate to cloud due to our internal security protocols.
We need an official statement how to deal with this problem, as soon as possible. We believe that security issues like this must be possible to fix even without paid maintenance, since without it your product cannot be used anymore.
Thank you,
Kind Regards,
Petr Vokoun
Hi @petrvokoun ,
here an official statement provided by Atlassian https://confluence.atlassian.com/doc/confluence-security-advisory-2021-08-25-1077906215.html
If you can't upgrade your current Confluence , you can mitigate that issue through the workaround provided by Atlassian in that article.
Hope this helps,
Fabio
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Online forums and learning are now in one easy-to-use experience.
By continuing, you accept the updated Community Terms of Use and acknowledge the Privacy Policy. Your public name, photo, and achievements may be publicly visible and available in search engines.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.