EXPOSURES › CVE-2022-26134
CVE-2022-26134
CRITICAL ⌖ ON CISA KEV · EXPLOITEDAn unauthenticated remote code execution flaw in Atlassian Confluence Server/Data Center was actively exploited in the wild and linked to ransomware attacks.
An unauthenticated attacker could execute arbitrary code on Confluence Server/Data Center instances, enabling ransomware deployment and data exfiltration. DIB organizations must ensure Confluence is patched and monitored for exploitation, as this critical vulnerability was actively weaponized against targets.
Shame score — A critical RCE flaw was actively exploited in the wild and linked to ransomware, indicating severe negligence in patching and threat monitoring.
▸ RECOMMENDED ACTION Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.
Atlassian Confluence Server and Data Center contain a remote code execution vulnerability that allows for an unauthenticated attacker to perform remote code execution.