Executive brief
Atlassian Confluence Data Center and Server contain an unauthenticated OGNL template injection vulnerability. An attacker can exploit this to achieve remote code execution (RCE) on affected instances. This vulnerability primarily impacts older, unsupported versions as recent supported versions were mitigated during regular updates.
Affected products
- Atlassian Confluence Data Center 8.0.0 to < 8.5.4, 8.7.0 to < 8.7.1
- Atlassian Confluence Server 8.0.0 to < 8.5.4, 8.7.0 to < 8.7.1
Timeline
- 2024-01-24: disclosed
- 2024-01-24: advisory
- 2024-01-24: kev added: Added to CISA KEV catalog
- 2024-01-24: exploited: Reported as exploited in the wild in the advisory and CISA KEV.