Known Vulnerabilities for products from Atlassian
Listed below are 20 of the newest known vulnerabilities associated with the vendor "Atlassian".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-77274 json | Not Provided | 2026-09-22 | 2026-09-22 | |
| CVE-2026-77272 json | Not Provided | 2026-09-22 | 2026-09-23 | |
| CVE-2026-77271 json | Not Provided | 2026-09-22 | 2026-09-24 | |
| CVE-2026-77270 json | Not Provided | 2026-09-22 | 2026-09-22 | |
| CVE-2026-77269 json | Not Provided | 2026-09-22 | 2026-09-22 | |
| CVE-2026-77268 json | Not Provided | 2026-09-22 | 2026-09-23 | |
| CVE-2026-77267 json | Not Provided | 2026-09-22 | 2026-09-22 | |
| CVE-2026-77266 json | Not Provided | 2026-09-22 | 2026-09-22 | |
| CVE-2026-77265 json | Not Provided | 2026-09-22 | 2026-09-22 | |
| CVE-2026-77262 json | Not Provided | 2026-09-22 | 2026-09-22 | |
| CVE-2026-21584 json | This High severity Improper Authorization vulnerability was introduced in versions 10.0.0, 10.1.0, 10.2.0, 11.0.0, 12.0.0, an... | Not Provided | 2026-08-18 | 2026-09-02 |
| CVE-2026-21579 json | This High severity Information Disclosure vulnerability was introduced in versions 7.17.0, 7.19.0, 8.5.0, 8.9.0, 9.0.1, 9.1.0... | Not Provided | 2026-07-21 | 2026-08-11 |
| CVE-2026-21577 json | This High severity DoS (Denial of Service) vulnerability was introduced in versions 9.0.1, 9.1.0, 9.2.0, 9.3.1, 9.4.0, 9.5.1,... | Not Provided | 2026-07-21 | 2026-08-10 |
| CVE-2026-21575 json | This High severity RCE (Remote Code Execution) vulnerability was introduced in version 3.4.11 of Sourcetree for Mac and Sourc... | Not Provided | 2026-07-21 | 2026-08-10 |
| CVE-2026-21571 json | This Critical severity OS Command Injection vulnerability was introduced in versions 9.6.0, 10.0.0, 10.1.0, 10.2.0, 11.0.0, ... | Not Provided | 2026-04-21 | 2026-08-10 |
| CVE-2026-21570 json | This High severity RCE (Remote Code Execution) vulnerability was introduced in versions 9.6.0, 10.0.0, 10.1.0, 10.2.0, 11.0... | Not Provided | 2026-03-17 | 2026-08-10 |
| CVE-2025-35112 json | Agiloft Release 28 contains an XML External Entities vulnerability in any table that allows 'import/export', allowing an auth... | Not Provided | 2025-08-26 | 2026-04-29 |
| CVE-2024-21674 json | 7.5 - HIGH | 2024-01-16 | 2024-01-22 | |
| CVE-2024-21673 json | 8.8 - HIGH | 2024-01-16 | 2024-01-22 | |
| CVE-2024-21672 json | 8.8 - HIGH | 2024-01-16 | 2024-01-22 |
Known software with vulnerabilities from Atlassian
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Atlassian | Activity Streams | 6.3.0 |
| Application | Atlassian | Application Links | 1.1 |
| Application | Atlassian | Bamboo | 1.0 |
| Application | Atlassian | Bitbucket | 1.0.0 |
| Application | Atlassian | Cloudtoken | 0.0.11 |
| Application | Atlassian | Companion | 1.0.0 |
| Application | Atlassian | Confluence | 1.0 |
| Application | Atlassian | Crowd | - |
| Application | Atlassian | Crowd2 | - |
| Application | Atlassian | Crucible | 1.1 |
| Application | Atlassian | Data Center | 6.12.0 |
| Application | Atlassian | Editor-core | - |
| Application | Atlassian | Fisheye | 1.2.5 |
| Application | Atlassian | Floodlight | 0.85 |
| Application | Atlassian | Floodlight Controller | 0.85 |
| Application | Atlassian | Greenhopper | 5.9.8 |
| Application | Atlassian | Hipchat | 0.1.2 |
| Application | Atlassian | Hipchat Data Center | 3.0.0 |
| Application | Atlassian | Hipchat Server | 2.2.0 |
| Application | Atlassian | Html Include And Replace Macro | 1.4.0 |