CVE-2021-26072

Publication date

2021-04-01 18:10:35

Family

atlassian

State

PUBLISHED

Description

The WidgetConnector plugin in Confluence Server and Confluence Data Center before version 5.8.6 allowed remote attackers to manipulate the content of internal network resources via a blind Server-Side Request Forgery (SSRF) vulnerability.