logo

Exploitation Of Atlassian Confluence RCE Vulnerability

ID: cb711fda-d8aa-5640-aa9b-4c9a97b7b041

STIX ID: report--cb711fda-d8aa-5640-aa9b-4c9a97b7b041

Feed Name: Cyble Blog

Threat Score
80/100

Date Published: 2024-10-25

Date Updated: 2026-07-17

...
...

This report details a critical OGNL template-injection RCE (CVE-2023-22527) affecting outdated Atlassian Confluence Server and Data Center releases (notably 8.0.x–8.5.3), explains technical exploitation (including bypasses to an OGNL length restriction), documents active scanning/exploitation observed by Cyble with numerous internet-exposed instances and IoCs, and recommends immediate patching (Confluence Data Center and Server 8.5.5 LTS and Confluence Data Center 8.7.2) plus security hygiene measures.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.