
Security
Atlassian flaw CVE-2026-21589: exploited two hours after the PoC dropped
Atlassian patched a critical flaw, CVE-2026-21589, that lets attackers read protected files on eight self-hosted products without logging in. The first exploitation attempts came two hours after a proof of concept went public.