{"id":"CVE-2026-77262","title":"MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira)","summary":"MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, confluence_upload_attachment accepts an attacker-controlled file_path and does not apply the path restriction added for…","severity":"high","cvss":8.6,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N","cwe":["CWE-22"],"vendor":"sooperset","product":"mcp-atlassian","affected":["mcp-atlassian < 0.22.0"],"published":"2026-09-22","updated":"2026-09-22","sourceUpdated":"2026-09-22T19:16:50.480","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-77262","references":[{"url":"https://github.com/sooperset/mcp-atlassian/commit/b041733473f95119dd539542a43c280737a8e460","label":"security-advisories@github.com"},{"url":"https://github.com/sooperset/mcp-atlassian/pull/1448","label":"security-advisories@github.com"},{"url":"https://github.com/sooperset/mcp-atlassian/releases/tag/v0.22.0","label":"security-advisories@github.com"},{"url":"https://github.com/sooperset/mcp-atlassian/security/advisories/GHSA-p6hp-93wp-fh6p","label":"security-advisories@github.com"},{"url":"https://github.com/advisories/GHSA-p6hp-93wp-fh6p"}],"tags":["nvd","exploit-available","cve.org","ghsa","pip"],"exploits":{"github":1,"githubRepos":["https://github.com/romain-deperne/CVE-2026-77262"],"checkedAt":"2026-09-22T20:10:49.889Z"},"exploitAvailable":true,"ingestedAt":"2026-09-22T19:09:10.012Z","aliases":["GHSA-p6hp-93wp-fh6p"],"ecosystem":"pip","patched":["mcp-atlassian 0.22.0"],"slug":"CVE-2026-77262","body":"## Overview\n\nMCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, confluence_upload_attachment accepts an attacker-controlled file_path and does not apply the path restriction added for the earlier download vulnerability. A caller can traverse outside the workspace and upload arbitrary server-readable files to Confluence. The advisory traces the vulnerable input and processing flow through confluence_upload_attachment, file_path, and CVE-2026-27825, which identify the affected entry points, controls, and code paths. This issue is fixed in version 0.22.0.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.\n\n## Package advisory (CVE-2026-77262)\n\nAffected packages:\n\n- `mcp-atlassian < 0.22.0`\n\nPatched in:\n\n- `mcp-atlassian 0.22.0`\n\nSource: https://github.com/advisories/GHSA-p6hp-93wp-fh6p","depth":"midnight","depthScore":59,"depthScoreParts":{"impact":47.3,"likelihood":0,"exploitation":12,"ransomware":0},"changes":[]}