CVE-2021-26085
Atlassian Confluence Server
Affected versions of Atlassian Confluence Server allow remote attackers to view restricted resources via a Pre-Authorization Arbitrary File Read vulnerability in the /s/ endpoint. The affected versions are before version 7.4.10, and from version 7.5.0 before 7.12.3.
- CVSS
- 5.3
- EPSS
- 99.9% 100.0% percentile
- CISA KEV
- Listed
- Published
- 2021.08.03