Atlassian has released urgent patches for a critical flaw (CVE-2026-21589) affecting eight Data Center products, including Jira and Confluence, after reports of active exploitation in the wild emerged.
A critical vulnerability (CVE-2026-21589) in eight Atlassian Data Center products allows unauthenticated attackers to read specific files from the web application root directory. Atlassian rated the flaw 9.3 out of 10 and has released fixed