We migrated from onprem Confluence to Cloud Confluence recently.
We want to ensure that following vulnerability (present in onprem version) is not associated with Cloud Confluence.
CVE-2022-26136
CVE-2022-26137
Kindly confirm.
Thanks,
Safvan
Fixes have already been applied to Cloud sites for these vulnerabilities.
See more information on this page: https://confluence.atlassian.com/security/multiple-products-security-advisory-cve-2022-26136-cve-2022-26137-1141493031.html
Atlassian Cloud sites are not affected.
Fixes have been deployed to Atlassian Cloud sites. If your Atlassian site is accessed via a bitbucket.org or an atlassian.net domain, it is an Atlassian Cloud site.
Ste
Hello @Safvan Kothawala ,
Welcome to the Atlassian Community!!
As we don't have access to infrastructure or database, so Atlassian is managing vulnerability fixes, upgrades and so on on Cloud product and Cloud product are up to date.
Regards,
Mayur
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
No, Atlassian cloud instances are not vulnerable to CVE-2022-26136/7 and no customer action is required.
Please check this link for more info.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.