
Technology
Atlassian warns of a critical file access flaw in Jira, Confluence and six more Data Center products
CVE-2026-21589 lets an unauthenticated attacker read files from the web root of self-hosted Atlassian servers. Fixes are out, and Atlassian says to take exposed instances offline if you can't patch yet.