CVE Published: 01/04/2021 |
CVE Updated: 17/09/2024 |
CVE Year: 2021 Source: atlassian |
Vendor: Atlassian |
Product: Confluence Server Status : PUBLISHED
CVE-2021-26072 Description
The WidgetConnector plugin in Confluence Server and Confluence Data Center before version 5.8.6 allowed remote attackers to manipulate the content of internal network resources via a blind Server-Side Request Forgery (SSRF) vulnerability.