{"cvss":9.8,"datePublished":"2022-06-02","dateUpdated":"2022-06-02","description":"Atlassian Confluence Server and Data Center contain a remote code execution vulnerability that allows for an unauthenticated attacker to perform remote code execution.","dueDate":"2022-06-06","id":"CVE-2022-26134","kev_catalogs":["cisa"],"knownRansomwareCampaignUse":"Known","notes":"https://nvd.nist.gov/vuln/detail/CVE-2022-26134","product":"Confluence Server/Data Center","requiredAction":"Immediately block all internet traffic to and from affected products AND apply the update per vendor instructions [https://confluence.atlassian.com/doc/confluence-security-advisory-2022-06-02-1130377146.html] OR remove the affected products by the due date on the right. Note: Once the update is successfully deployed, agencies can reassess the internet blocking rules.","severity":"CRITICAL","source":"cisa_known_exploited","title":"Atlassian Confluence Server and Data Center Remote Code Execution Vulnerability","vendor":"Atlassian"}