Atlassian urges immediate patching of critical Data Center file access vulnerability (CVE-2026-21589)

Attackers who know where to look can read files from Atlassian Data Center installations without logging in, the company has warned. About CVE-2026-21589 CVE-2026-21589, a critical arbitrary file access vulnerability with a 9.3 CVSS score, affects all versions of Bitbucket Data Center, Confluence…

cloudsecurity

Sources

Vulnerabilities

Why this score
Signals contributing to the severity score
SignalPoints
cvss critical — 9.320
widely deployed15
Atlassian urges immediate patching of critical Data Center file access vulnerability (CVE-2026-21589) · TechNews