Atlassian urges immediate patching of critical Data Center file access vulnerability (CVE-2026-21589)

Wait 5 sec.

Attackers who know where to look can read files from Atlassian Data Center installations without logging in, the company has warned. About CVE-2026-21589 CVE-2026-21589, a critical arbitrary file access vulnerability with a 9.3 CVSS score, affects all versions of Bitbucket Data Center, Confluence Data Center, Jira Service Management Data Center, Jira Software Data Center, Bamboo Data Center, Crowd Data Center, Crucible and Fisheye. Atlassian calculated the CVSS 4.0 score through its internal assessment and published … More →The post Atlassian urges immediate patching of critical Data Center file access vulnerability (CVE-2026-21589) appeared first on Help Net Security.