Atlassian — Confluence Data Center and Server — Atlassian Confluence Data Center and Server contain an unauthenticated OGNL template injection vulnerability that can lead to remote code execution.
Details
EPSS Score
ⓘ
99.98%
100th percentile
Confidence
100%
CISA KEV
Date Added
Jan 24, 2024
Patch Due
Feb 14, 2024
Used in ransomware campaigns
Required Action
Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.