File Path Exposure Vulnerability in Confluence and Jira by Atlassian
CVE-2026-73498
7.7HIGH
What is CVE-2026-73498?
The MCP Atlassian server for Confluence and Jira has a vulnerability in the confluence_upload_attachment function, which allows an authenticated client to exploit the file_path parameter. This oversight permits the reading of any file accessible to the server process. Consequently, an attacker could exfiltrate sensitive information, including environment variables like CONFLUENCE_API_TOKEN, by integrating untrusted content that triggers the tool. The issue has been rectified in version 0.22.0.
Affected Version(s)
mcp-atlassian < 0.22.0
