MikeTrendsTrends right now

Mmastodon TechnologyCybersecurity first seen 3 h ago, last 3 h ago, peak #9

Critical Atlassian and Citrix vulnerabilities drive admin warnings

Original: Today's brief: - Atlassian DC CVE-2026-21589 (CVSS 9.3): pre-auth file read, probed since Oct 6. Patch (e.g. Confluence

Security teams are being urged to patch two high-severity flaws. A pre-authentication file read in Atlassian Data Center products, tracked as CVE-2026-21589 with a CVSS score of 9.3, has reportedly been probed in the wild since October 6, with fixed Confluence builds including 9.2.26 and 10.2.19; admins are told to check logs for URL-encoded path traversal. Citrix NetScaler CVE-2026-107406, scoring 9.5, affects SAML SP and IdP configurations and is fixed in 14.1-73.46 and 13.1-64.29.

Why now: Both flaws are critically rated, actively exploited or probed, and require urgent patching by administrators.

AtlassianConfluenceCitrixNetScaler

Open on mastodon →

Evidence

API: https://socialmediatrends-api.osmike.com/v1/trends/1620862