MCP Atlassian Server Let Anyone on the Network Act as the Operator in Jira and Confluence
CVE-2026-77244 (CVSS 10.0): mcp-atlassian's HTTP transport ran unauthenticated requests with the operator's Atlassian token. Upgrade to 0.23.1.
Tag archive
Coverage tagged cve 2026 77244.
CVE-2026-77244 (CVSS 10.0): mcp-atlassian's HTTP transport ran unauthenticated requests with the operator's Atlassian token. Upgrade to 0.23.1.