-
Public Security Vulnerability
-
Resolution: Fixed
-
Low
-
7.4.0, 7.4.16, 7.13.0, 7.13.6, 7.14.0, 7.14.2, 7.15.0, 7.15.1, 7.16.0, 7.16.3, 7.17.0, 7.17.3, 7.18.0
-
None
-
10
-
Critical
-
CVE-2022-26134
In affected versions of Confluence Server and Data Center, an OGNL injection vulnerability exists that would allow an unauthenticated attacker to execute arbitrary code on a Confluence Server or Data Center instance.
The affected versions are from 1.3.0 before 7.4.17, from 7.13.0 before 7.13.7, from 7.14.0 before 7.14.3, from 7.15.0 before 7.15.2, from 7.16.0 before 7.16.4, from 7.17.0 before 7.17.4, and from 7.18.0 before 7.18.1.
For more information, see https://confluence.atlassian.com/doc/confluence-security-advisory-2022-06-02-1130377146.html
- is duplicated by
-
CONFSERVER-79000 Unauthenticated remote code execution vulnerability via OGNL template injection - Duplicate
-
- Closed
-
- mentioned in
-
Page No Confluence page found with the given URL.
-
Page Failed to load
-
Page Failed to load
-
Page Loading...
-
Page Loading...
-
Page Loading...
-
Page Loading...
-
Page Loading...
-
Page Loading...
-
Page Loading...
-
Page Loading...
Form Name |
---|
Hello there

I had tried a workaround on one of our lower environments and found some inconsistency in Confluence Usage statistics
Before:
Total Space: 157
Site Spaces: 124
Personal Spaces: 33
Content (All Versions): 736270
Content (Current Versions): 354470
Local Users: 4104
Local Groups: 85
After:

Total Space: 157
Site Spaces: 124
Personal Spaces: 33
Content (All Versions): 736353
Content (Current Versions): 354527
Local Users: 1994
Local Groups: 74
I aware about content numbers but my team has concerns about Local Users/Groups. Could someone explain why the numbers got changed?
Thanks in advance