15 Total CVEs
15 AI Analyzed
0 CISA KEV
2 Critical

Profile

0% ended up actively exploited 0 of 15 added to CISA KEV
13% rated critical (CVSS 9.0+) 2 critical, 13 high
0 with a public exploit on record positive-only index; absence is not proof

Last 12 months

15 CVEs in the last 12 months

Products

  • mcp-atlassian15

1 products in total

Every figure counts the high and critical CVEs CVE Brief has published for this vendor, not every CVE the vendor has ever received. Exploitation means listing in the CISA Known Exploited Vulnerabilities catalog. No patch-availability figure is shown because CVE Brief does not measure it.

All Vendors
Showing 1-15 of 15 CVEs
CVE-2026-77274
Analyzed
8.8
sooperset mcp-atlassian

MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, validate_url_for_ssrf has a back...

2026-09-23
Full analysis →
CVE-2026-77271
Analyzed
8.3
sooperset mcp-atlassian

MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, validate_safe_path defaults its...

2026-09-23
Full analysis →
CVE-2026-77267
Analyzed
8.3
sooperset mcp-atlassian

MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, the X-Atlassian-Jira-Url and X-A...

2026-09-23
Full analysis →
CVE-2026-77262
Analyzed
8.6
sooperset mcp-atlassian

MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, confluence_upload_attachment acc...

2026-09-23
Full analysis →
CVE-2026-77260
Analyzed
8.3
sooperset mcp-atlassian

MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, the Confluence and Jira upload_a...

2026-09-23
Full analysis →
CVE-2026-77257
Analyzed
8.3
sooperset mcp-atlassian

MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, HTTP-exposed Jira and Confluence...

2026-09-23
Full analysis →
CVE-2026-77256
Analyzed
8.3
sooperset mcp-atlassian

MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, the plaintext OAuth fallback fil...

2026-09-23
Full analysis →
CVE-2026-77255
Analyzed
8.6
sooperset mcp-atlassian

MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, the Jira update_issue attachment...

2026-09-23
Full analysis →
CVE-2026-77251
Analyzed
8.3
sooperset mcp-atlassian

MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, Jira search accepts a forbidden...

2026-09-23
Full analysis →
CVE-2026-77248
Analyzed
8.6
sooperset mcp-atlassian

MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, the streamable HTTP transport ac...

2026-09-23
Full analysis →
CVE-2026-77247
Analyzed
8.3
sooperset mcp-atlassian

MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, Jira and Confluence upload tools...

2026-09-23
Full analysis →
CVE-2026-77244
Analyzed
10
sooperset mcp-atlassian

An authentication bypass in sooperset mcp-atlassian allows unauthenticated network clients to perform unauthorized read and write operations on linked...

2026-09-23
Full analysis →
CVE-2026-77243
Analyzed
8.8
sooperset mcp-atlassian

MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, ENABLED_TOOLS and TOOLSETS are a...

2026-09-23
Full analysis →
CVE-2026-27826
Analyzed
8.2
sooperset mcp-atlassian

MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira)

2026-03-11
Full analysis →
CVE-2026-27825
Analyzed
9
sooperset mcp-atlassian

A directory traversal vulnerability in the MCP Atlassian server allows attackers to write arbitrary files to the server, potentially leading to remote...

2026-03-11
Full analysis →