mcp-atlassian

13 records · 13 with a public proof-of-concept

Disclosed vulnerabilities where the NVD names mcp-atlassian as an affected vendor, highest CVSS first.

  1. CRITICAL 9.1CVE-2026-77254public PoC

    MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, requests to the HTTP MCP endpoint without a per-user identity are allowed to reach tool handlers, which then use globally configured Jira or C…

    mcp atlassian

    AI risk analysis on Exploit-DB.ai →

  2. HIGH 8.8CVE-2026-77271public PoC

    MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, validate_safe_path defaults its base directory to os.getcwd(), and affected Confluence attachment call sites omit base_dir, allowing attacker-…

    mcp atlassian

    AI risk analysis on Exploit-DB.ai →

  3. HIGH 8.6CVE-2026-77248public PoC

    MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, the streamable HTTP transport accepts requests without a user identity and falls back to operator credentials, while upload_attachment accepts…

    mcp atlassian

    AI risk analysis on Exploit-DB.ai →

  4. HIGH 8.2CVE-2026-77274public PoC

    MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, validate_url_for_ssrf has a backslash authority confusion because it interprets the authority differently from the Requests connection layer i…

    mcp atlassian

    AI risk analysis on Exploit-DB.ai →

  5. HIGH 7.4CVE-2026-77246public PoC

    MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, an HTTP transport deployment with READ_ONLY_MODE=false accepts a request without an Authorization identity and permits attacker-controlled Atl…

    mcp atlassian

    AI risk analysis on Exploit-DB.ai →

  6. HIGH 7.1CVE-2026-77253public PoC

    MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, Jira and Confluence attachment upload tools accept arbitrary local filesystem paths and send the selected bytes to Atlassian. In HTTP or multi…

    mcp atlassian

    AI risk analysis on Exploit-DB.ai →

  7. HIGH 7.1CVE-2026-77261public PoC

    MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, _make_ssrf_safe_hook is omitted from JiraFetcher and ConfluenceFetcher sessions created through the basic-auth and oauth_pat branches. If an a…

    mcp atlassian

    AI risk analysis on Exploit-DB.ai →

  8. MEDIUM 6.5CVE-2026-77266public PoC

    MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, upload_attachment accepts absolute paths and traversal sequences without constraining the resolved path to the server workspace. An MCP caller…

    mcp atlassian

    AI risk analysis on Exploit-DB.ai →

  9. MEDIUM 6.5CVE-2026-77256public PoC

    MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, the plaintext OAuth fallback file containing refresh and access tokens is written with permissions inherited from the process umask. Under com…

    mcp atlassian

    AI risk analysis on Exploit-DB.ai →

  10. MEDIUM 6.5CVE-2026-77247public PoC

    MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, Jira and Confluence upload tools interpret caller-controlled path arguments on the MCP server and open those files before sending them as atta…

    mcp atlassian

    AI risk analysis on Exploit-DB.ai →

  11. MEDIUM 6.5CVE-2026-77270public PoC

    MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, the Jira and Confluence attachment upload tools treat caller-controlled file_path values as trusted server-local paths. The server opens the s…

    mcp atlassian

    AI risk analysis on Exploit-DB.ai →

  12. MEDIUM 6.5CVE-2026-77252public PoC

    MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, caller-supplied projects_filter and spaces_filter arguments can replace administrator-configured allowlists, and caller-provided project or sp…

    mcp atlassian

    AI risk analysis on Exploit-DB.ai →

  13. MEDIUM 5.4CVE-2026-77272public PoC

    MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, the OAuth error query parameter is passed to CallbackHandler._send_response in oauth_setup.py and interpolated into an HTML page without escap…

    mcp atlassian

    AI risk analysis on Exploit-DB.ai →