πŸ“Œ Multiple Products Security Advisory - CVE-2022-26136, CVE-2022-26137

This week Atlassian released an advisory detailing new CVEs affecting multiple Atlassian products, including Jira and Confluence.

Learn more: https://confluence.atlassian.com/security/multiple-products-security-advisory-cve-2022-26136-cve-2022-26137-1141493031.html

🌀 Atlassian Cloud products are not affected, per the advisory.

Another day, another CVE, am I right? Stay diligent, and happy patching. πŸ”’

5 comments

Comment

Log in or Sign up to comment
Robert Wen_ReleaseTEAM_
Community Leader
Community Leader
Community Leaders are connectors, ambassadors, and mentors. On the online community, they serve as thought leaders, product experts, and moderators.
July 21, 2022

There was another CVE released that won't affect as many people, but if affected, you should pay attention.  

CVE-2022-26138 affects those that have Questions for Confluence installed.  Older versions created an account with a hardcoded password.  Uninstalling the app won't delete the account.

Details are here: https://confluence.atlassian.com/doc/questions-for-confluence-security-advisory-2022-07-20-1142446709.html

Like β€’ # people like this
Dave Liao
Community Leader
Community Leader
Community Leaders are connectors, ambassadors, and mentors. On the online community, they serve as thought leaders, product experts, and moderators.
July 21, 2022

@Robert Wen_ReleaseTEAM_ good highlight, thanks for mentioning that! πŸ’ͺ 

Like β€’ # people like this
Taranjeet Singh
Community Leader
Community Leader
Community Leaders are connectors, ambassadors, and mentors. On the online community, they serve as thought leaders, product experts, and moderators.
July 22, 2022

Thank you, @Dave Liao and @Robert Wen_ReleaseTEAM_ for sharing the infirmation about these security vulnerabilities.

Like β€’ # people like this
Dave Liao
Community Leader
Community Leader
Community Leaders are connectors, ambassadors, and mentors. On the online community, they serve as thought leaders, product experts, and moderators.
July 22, 2022

@Taranjeet Singh - anytime, we've got to protect our users!

Like β€’ Robert Wen_ReleaseTEAM_ likes this
Robert Wen_ReleaseTEAM_
Community Leader
Community Leader
Community Leaders are connectors, ambassadors, and mentors. On the online community, they serve as thought leaders, product experts, and moderators.
July 22, 2022

You're welcome, @Taranjeet Singh !  Happy to help!

TAGS
AUG Leaders

Atlassian Community Events