Create
cancel
Showing results for 
Search instead for 
Did you mean: 
Sign up Log in

Cloud Confluence Security

Safvan Kothawala January 9, 2023

We migrated from onprem Confluence to Cloud Confluence recently.

We want to ensure that following vulnerability (present in onprem version) is not associated with Cloud Confluence.

CVE-2022-26136

CVE-2022-26137

 

Kindly confirm.

 

Thanks,

Safvan

4 answers

1 vote
Stephen Wright _Elabor8_
Community Leader
Community Leader
Community Leaders are connectors, ambassadors, and mentors. On the online community, they serve as thought leaders, product experts, and moderators.
January 9, 2023

Hi @Safvan Kothawala 

Fixes have already been applied to Cloud sites for these vulnerabilities.

See more information on this page: https://confluence.atlassian.com/security/multiple-products-security-advisory-cve-2022-26136-cve-2022-26137-1141493031.html

Atlassian Cloud sites are not affected.

Fixes have been deployed to Atlassian Cloud sites. If your Atlassian site is accessed via a bitbucket.org or an atlassian.net domain, it is an Atlassian Cloud site.

Ste

0 votes
Mayur Jadhav
Community Leader
Community Leader
Community Leaders are connectors, ambassadors, and mentors. On the online community, they serve as thought leaders, product experts, and moderators.
January 9, 2023

Hello @Safvan Kothawala ,

Welcome to the Atlassian Community!!

As we don't have access to infrastructure or database, so Atlassian is managing vulnerability fixes, upgrades and so on on Cloud product and Cloud product are up to date.

 

Regards,
Mayur

0 votes
Hardik Solanki January 9, 2023

No, Atlassian cloud instances are not vulnerable to CVE-2022-26136/7 and no customer action is required.

 

Please check this link for more info.

0 votes
Howard Nedd
Rising Star
Rising Star
Rising Stars are recognized for providing high-quality answers to other users. Rising Stars receive a certificate of achievement and are on the path to becoming Community Leaders.
January 9, 2023

Hi @Safvan Kothawala ,

 

These are not relevant to cloud products.

 

Regards

Howard

Suggest an answer

Log in or Sign up to answer
TAGS
AUG Leaders

Atlassian Community Events