Uploaded image for project: 'Confluence Server and Data Center'
  1. Confluence Server and Data Center
  2. CONFSERVER-21162

Security Vulnerability in Confluence Remote API

    XMLWordPrintable

    Details

      Description

      We have identified and fixed a vulnerability in the Remote API which affects Confluence instances, including publicly available instances. The Remote API allows an attacker to escalate user privileges, excluding the level of system administrator privileges.

      This issue is reported in our security advisory on this page:
      http://confluence.atlassian.com/x/FAZ7DQ

        Attachments

          Activity

            People

            Assignee:
            don.willis@atlassian.com Don Willis
            Reporter:
            shawse Sally Hawse [Atlassian]
            Votes:
            0 Vote for this issue
            Watchers:
            3 Start watching this issue

              Dates

              Created:
              Updated:
              Resolved: