In affected versions of Confluence Server and Data Center, an OGNL injection vulnerability exists that would allow an unauthenticated attacker to execute arbitrary code on a Confluence Server or Data Center instance. The affected versions are from 1.3.0 before 7.4.17, from 7.13.0 before 7.13.7, from 7.14.0 before 7.14.3, from 7.15.0 before 7.15.2, from 7.16.0 before 7.16.4, from 7.17.0 before 7.17.4, and from 7.18.0 before 7.18.1.
Metrics
Affected Vendors & Products
References
History
Tue, 04 Feb 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
kev
|

Status: PUBLISHED
Assigner: atlassian
Published:
Updated: 2025-02-04T14:18:51.802Z
Reserved: 2022-02-25T00:00:00.000Z
Link: CVE-2022-26134

Updated: 2024-08-03T04:56:37.787Z

Status : Analyzed
Published: 2022-06-03T22:15:07.717
Modified: 2025-02-09T20:48:52.653
Link: CVE-2022-26134

No data.