Junglewise Threat Intelligence

CVE-2023-22527: Atlassian Confluence Data Center and Server Template Injection Vulnerability

CVE-2023-22527 · Severity: critical · CVSS 10 · Exploited in the wild · Published 2024-01-24

Executive brief

Atlassian Confluence Data Center and Server contain an unauthenticated OGNL template injection vulnerability. An attacker can exploit this to achieve remote code execution (RCE) on affected instances. This vulnerability primarily impacts older, unsupported versions as recent supported versions were mitigated during regular updates.

Affected products

  • Atlassian Confluence Data Center 8.0.0 to < 8.5.4, 8.7.0 to < 8.7.1
  • Atlassian Confluence Server 8.0.0 to < 8.5.4, 8.7.0 to < 8.7.1

Timeline

  • 2024-01-24: disclosed
  • 2024-01-24: advisory
  • 2024-01-24: kev added: Added to CISA KEV catalog
  • 2024-01-24: exploited: Reported as exploited in the wild in the advisory and CISA KEV.

Related threats