logo

High-Severity RCE Flaw in Atlassian Bamboo Threatens CI/CD Environments

ID: a5f7d129-8f69-56f9-b6db-00614ee6d74b

STIX ID: report--a5f7d129-8f69-56f9-b6db-00614ee6d74b

Feed Name: securityonline.info

Threat Score
72/100

Date Published: 2026-03-19

Date Updated: 2026-04-23

Author: Ddos

...
...

Atlassian disclosed CVE-2026-21570, a high-severity Remote Code Execution (RCE) in Bamboo Data Center (CVSS 8.6) that allows an authenticated attacker to execute arbitrary code; multiple major release versions are affected and Atlassian urges immediate upgrades to specified fixed minimum versions (e.g., 9.6.24, 10.2.16, 12.1.3 or higher).

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.