Security Advisory

CVE-2021-26072

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-04-01 18:10:35
Last updated 2024-09-17 01:40:50
Assigner atlassian
State PUBLISHED

Description

The WidgetConnector plugin in Confluence Server and Confluence Data Center before version 5.8.6 allowed remote attackers to manipulate the content of internal network resources via a blind Server-Side Request Forgery (SSRF) vulnerability.