CVE-2021-26084: Atlassian Confluence Server and Data Center Object-Graph
Atlassian Confluence Server and Data Center Object-Graph Navigation Language (OGNL) Injection Vulnerability. Atlassian Confluence Server and Data Server contain an Object-Graph Navigation Language (OGNL) injection vulnerability that may allow an unauthenticated attacker to execute code.
- CISA KEV-listed (remediation due 2021-11-17)
- used in ransomware campaigns
- EPSS 94.4% (100.0% percentile)