back to article Stop what you’re doing and patch this critical Confluence flaw, warns Atlassian

Atlassian has told customers they “must take immediate action” to address a newly discovered flaw in its Confluence collaboration tool. An advisory issued on October 31st warns of CVE-2023-22518, described as an “improper authorization vulnerability in Confluence Data Center and Server”, the on-prem versions of Atlassian’s …

  1. nematoad

    Time to go cloudy.

    Risk of ‘significant data loss’ for on-prem customers...

    Now this might be the old, crusty cynic in me but this warning looks very convenient.

    Atlassian is currently trying to move customers to the cloud and given the vague details of the threat: "The Australian vendor hasn’t detailed the nature of the flaw or how it can facilitate data loss. The company has said it’s not seen any exploits." inclines me to think that good old FUD is being brought into play here.

    I may be wrong about this, I often am, but something about this affair smells a bit fishy.

  2. Phil O'Sophical Silver badge


    Why does anyone still buy Atlassian's crap?

