Official source evidencegithub.comVersioned article
Official source article · github.com

Release v0.22.0 · sooperset/mcp-atlassian · GitHub

BlackTree keeps a versioned source snapshot and links it to relevant CVE reports. The publisher remains authoritative for product applicability, release details and installation guidance.

Read the official article ↗
Publishergithub.com
Article IDNo stable ID in source URL
Verified snapshot26 Sept 2026, 14:36 UTC
Linked CVEs29

Linked CVE reports

These are source relationships, not a claim that this article fixes every affected product or branch.

  • CVE-2026-77265MCP Atlassian: SSRF via DNS Rebinding in Header-Based Authentication Flow
  • CVE-2026-77262MCP Atlassian: Path Traversal / Arbitrary File Read in confluence_upload_attachment MCP tool (incomplete fix of CVE-2026-27825)
  • CVE-2026-77267mcp-atlassian has an incomplete SSRF remediation
  • CVE-2026-77259MCP Atlassian: Arbitrary file read via confluence_upload_attachment allows exfiltration of server credentials
  • CVE-2026-77269MCP Atlassian: Path traversal in upload_attachment allows arbitrary file read (incomplete fix for CVE-2026-27825)
  • CVE-2026-77255MCP Atlassian: Arbitrary File Read & Exfiltration (Confused Deputy) in JIRA update_issue
  • CVE-2026-77260MCP Atlassian: Arbitrary local file READ via unconstrained file_path in upload_attachment (Confluence + Jira)
  • CVE-2026-77251MCP Atlassian: JIRA_PROJECTS_FILTER / CONFLUENCE_SPACES_FILTER allow forbidden-project content exfiltration (one LIVE-proven on Atlassian Cloud)
  • CVE-2026-77258MCP Atlassian: Arbitrary file read/exfiltration via upload_attachment missing validate_safe_path()
  • CVE-2026-77246MCP Atlassian: MCP HTTP Client Server-Local File Exfiltration via Unvalidated Attachment Upload Path
  • CVE-2026-77248MCP Atlassian: Unauthenticated arbitrary local file read via upload_attachment file_path, chained with missing auth on streamable-http transport
  • CVE-2026-77271MCP Atlassian: Incomplete path traversal fix allows intra-CWD module overwrite and RCE (bypass of CVE-2026-27825)
  • CVE-2026-77244[mcp-atlassian] Authentication bypass in HTTP transport: AtlassianOpaqueTokenVerifier accepts any non-empty token
  • CVE-2026-77252MCP Atlassian: JIRA_PROJECTS_FILTER and CONFLUENCE_SPACES_FILTER can be bypassed in search tools
  • CVE-2026-77261MCP Atlassian: SSRF redirect protection missing for basic-auth and OAuth authentication branches
  • CVE-2026-77257MCP Atlassian: HTTP upload tools accept arbitrary server-local file paths
  • CVE-2026-77272MCP Atlassian: Reflected XSS in OAuth Setup Callback Handler
  • CVE-2026-77268MCP Atlassian: Insecure File Permissions on OAuth Token Storage
  • CVE-2026-77249MCP Atlassian: Incomplete fix for CVE-2026-27826: redirect-based SSRF via unhooked requests session in Jira user-permission lookup
  • CVE-2026-77256MCP Atlassian: OAuth refresh-token backup file is world-readable under default Unix umask
  • CVE-2026-77266MCP Atlassian: Path traversal in upload_attachment allows arbitrary file read and exfiltration via MCP tool call
  • CVE-2026-77254MCP Atlassian: Unauthenticated HTTP MCP requests can use globally configured Jira and Confluence credentials
  • CVE-2026-77243MCP Atlassian: ENABLED_TOOLS / Toolset authorization bypass
  • CVE-2026-77247MCP Atlassian: Arbitrary server-local file upload to Jira/Confluence attachments via unrestricted file_path parameters
  • CVE-2026-77253MCP Atlassian: Jira and Confluence attachment upload tools can read arbitrary server-local files
  • CVE-2026-77242MCP Atlassian: Incomplete fix for CVE-2026-27826: DNS rebinding bypasses SSRF validation (validated IP not pinned)
  • CVE-2026-77250MCP Atlassian: OAuth fallback token storage writes plaintext access and refresh tokens with group-readable permissions
  • CVE-2026-77270MCP Atlassian: Arbitrary File Read via Upload Attachment Tools
  • CVE-2026-77274MCP Atlassian: SSRF Protection Bypass

Source and provenance

Original title: Release v0.22.0 · sooperset/mcp-atlassian · GitHub. Captured 26 Sept 2026, 14:36 UTC. The stored article is used for enrichment and change detection; BlackTree does not republish the publisher's full text here.

Open the publisher's current version ↗