BlackTreeCVE IntelligenceOfficial source evidencegithub.comVersioned article
Official source article · github.com
Release v0.22.0 · sooperset/mcp-atlassian · GitHub
BlackTree keeps a versioned source snapshot and links it to relevant CVE reports. The publisher remains authoritative for product applicability, release details and installation guidance.
Read the official article ↗Publishergithub.com
Article IDNo stable ID in source URL
Verified snapshot26 Sept 2026, 14:36 UTC
Linked CVEs29
Linked CVE reports
These are source relationships, not a claim that this article fixes every affected product or branch.
- CVE-2026-77265MCP Atlassian: SSRF via DNS Rebinding in Header-Based Authentication Flow
- CVE-2026-77262MCP Atlassian: Path Traversal / Arbitrary File Read in confluence_upload_attachment MCP tool (incomplete fix of CVE-2026-27825)
- CVE-2026-77267mcp-atlassian has an incomplete SSRF remediation
- CVE-2026-77259MCP Atlassian: Arbitrary file read via confluence_upload_attachment allows exfiltration of server credentials
- CVE-2026-77269MCP Atlassian: Path traversal in upload_attachment allows arbitrary file read (incomplete fix for CVE-2026-27825)
- CVE-2026-77255MCP Atlassian: Arbitrary File Read & Exfiltration (Confused Deputy) in JIRA update_issue
- CVE-2026-77260MCP Atlassian: Arbitrary local file READ via unconstrained file_path in upload_attachment (Confluence + Jira)
- CVE-2026-77251MCP Atlassian: JIRA_PROJECTS_FILTER / CONFLUENCE_SPACES_FILTER allow forbidden-project content exfiltration (one LIVE-proven on Atlassian Cloud)
- CVE-2026-77258MCP Atlassian: Arbitrary file read/exfiltration via upload_attachment missing validate_safe_path()
- CVE-2026-77246MCP Atlassian: MCP HTTP Client Server-Local File Exfiltration via Unvalidated Attachment Upload Path
- CVE-2026-77248MCP Atlassian: Unauthenticated arbitrary local file read via upload_attachment file_path, chained with missing auth on streamable-http transport
- CVE-2026-77271MCP Atlassian: Incomplete path traversal fix allows intra-CWD module overwrite and RCE (bypass of CVE-2026-27825)
- CVE-2026-77244[mcp-atlassian] Authentication bypass in HTTP transport: AtlassianOpaqueTokenVerifier accepts any non-empty token
- CVE-2026-77252MCP Atlassian: JIRA_PROJECTS_FILTER and CONFLUENCE_SPACES_FILTER can be bypassed in search tools
- CVE-2026-77261MCP Atlassian: SSRF redirect protection missing for basic-auth and OAuth authentication branches
- CVE-2026-77257MCP Atlassian: HTTP upload tools accept arbitrary server-local file paths
- CVE-2026-77272MCP Atlassian: Reflected XSS in OAuth Setup Callback Handler
- CVE-2026-77268MCP Atlassian: Insecure File Permissions on OAuth Token Storage
- CVE-2026-77249MCP Atlassian: Incomplete fix for CVE-2026-27826: redirect-based SSRF via unhooked requests session in Jira user-permission lookup
- CVE-2026-77256MCP Atlassian: OAuth refresh-token backup file is world-readable under default Unix umask
- CVE-2026-77266MCP Atlassian: Path traversal in upload_attachment allows arbitrary file read and exfiltration via MCP tool call
- CVE-2026-77254MCP Atlassian: Unauthenticated HTTP MCP requests can use globally configured Jira and Confluence credentials
- CVE-2026-77243MCP Atlassian: ENABLED_TOOLS / Toolset authorization bypass
- CVE-2026-77247MCP Atlassian: Arbitrary server-local file upload to Jira/Confluence attachments via unrestricted file_path parameters
- CVE-2026-77253MCP Atlassian: Jira and Confluence attachment upload tools can read arbitrary server-local files
- CVE-2026-77242MCP Atlassian: Incomplete fix for CVE-2026-27826: DNS rebinding bypasses SSRF validation (validated IP not pinned)
- CVE-2026-77250MCP Atlassian: OAuth fallback token storage writes plaintext access and refresh tokens with group-readable permissions
- CVE-2026-77270MCP Atlassian: Arbitrary File Read via Upload Attachment Tools
- CVE-2026-77274MCP Atlassian: SSRF Protection Bypass
Source and provenance
Original title: Release v0.22.0 · sooperset/mcp-atlassian · GitHub. Captured 26 Sept 2026, 14:36 UTC. The stored article is used for enrichment and change detection; BlackTree does not republish the publisher's full text here.
Open the publisher's current version ↗