logo

Atlassian Confluence Server and Data Center Remote Code Execution (CVE-2023-22527) – Cato’s Analysis and Mitigation 

ID: 2b3d08c2-1eb7-50e3-83fc-7ee48ae861d3

STIX ID: report--2b3d08c2-1eb7-50e3-83fc-7ee48ae861d3

Feed Name: Cato Networks

Threat Score
90/100

Date Published: 2024-01-25

Date Updated: 2026-07-23

Author: Vadim Freger

...
...

Atlassian disclosed a critical CVE in Confluence Server/Data Center (CVSS 10) that enables unauthenticated remote code execution via unrestricted template access and OGNL/template injection. Affected 8.0.x through 8.5.3 require immediate upgrade as there is no workaround; public PoCs and observed exploitation attempts were reported and Cato deployed IPS signatures to block attacks.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.