Is CVE-2022-26134 patched on Confluence?

/static/assets/linux-logo.svg
Confluence Server and Data Center are vulnerable to an OGNL injection vulnerability that allows an unauthenticated attacker to execute arbitrary code. This TTP attempts to execute code on the Confluence server. The affected versions are from 1.3.0 before 7.4.17 and most LTS versions before 7.18.1.
locked
View Command

To view this TTPs command, you must be logged in with a professional or enterprise license.

Login

Test this TTP

Download Operator (1.7.1)
Test this TTP using one of our Operator chains
Is CVE-2022-26134 patched on Confluence?

2022-07-19

/static/assets/linux-logo.svg
A TTP that exploits CVE-2022-26134 in Confluence Server