EXPOSURES › CVE-2023-22518
CVE-2023-22518
CRITICAL ⌖ ON CISA KEV · EXPLOITEDAn unauthenticated attacker could exploit an improper authorization flaw in Atlassian Confluence Data Center and Server to cause significant data loss.
This vulnerability allows an unauthenticated attacker to bypass authorization controls, leading to significant data loss without compromising confidentiality. DIB organizations must ensure Confluence is patched immediately, as this flaw is actively exploited in the wild and linked to ransomware campaigns. Failure to patch exposes sensitive data to destruction or alteration, violating CMMC/NIST 800-171 requirements for patch management and data integrity.
Shame score — The flaw is actively exploited in the wild, linked to ransomware, and causes significant data loss despite being an authorization issue rather than a data exfiltration vector.
▸ RECOMMENDED ACTION Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.
Atlassian Confluence Data Center and Server contain an improper authorization vulnerability that can result in significant data loss when exploited by an unauthenticated attacker. There is no impact on confidentiality since the attacker cannot exfiltrate any data.