Security Vulnerability in Confluence Remote API

XMLWordPrintable

      We have identified and fixed a vulnerability in the Remote API which affects Confluence instances, including publicly available instances. The Remote API allows an attacker to escalate user privileges, excluding the level of system administrator privileges.

      This issue is reported in our security advisory on this page:
      http://confluence.atlassian.com/x/FAZ7DQ

            Assignee:
            Don Willis
            Reporter:
            Sally Hawse [Atlassian]
            Votes:
            0 Vote for this issue
            Watchers:
            3 Start watching this issue

              Created:
              Updated:
              Resolved: