Mmastodon TechnologyCybersecurity first seen 4 h ago, last 4 h ago, peak #9
Critical Atlassian and Citrix vulnerabilities drive admin warnings
Original: Today's brief: - Atlassian DC CVE-2026-21589 (CVSS 9.3): pre-auth file read, probed since Oct 6. Patch (e.g. Confluence
Security teams are being urged to patch two high-severity flaws. A pre-authentication file read in Atlassian Data Center products, tracked as CVE-2026-21589 with a CVSS score of 9.3, has reportedly been probed in the wild since October 6, with fixed Confluence builds including 9.2.26 and 10.2.19; admins are told to check logs for URL-encoded path traversal. Citrix NetScaler CVE-2026-107406, scoring 9.5, affects SAML SP and IdP configurations and is fixed in 14.1-73.46 and 13.1-64.29.
Why now: Both flaws are critically rated, actively exploited or probed, and require urgent patching by administrators.
AtlassianConfluenceCitrixNetScaler
Evidence
- Today's brief: - Atlassian DC CVE-2026-21589 (CVSS 9.3): pre-auth file read, probed since Oct 6. Patch (e.g. Confluence 9.2.26/10.2.19); check logs for URL-encoded .. - Citrix NetScaler CVE-2026-107406 (CVSS 9.5), SAML SP/IdP only. Fixed: 14.1-73.46, 13.1-64.29 - FortiBleed:… · tpsecurity@infosec.exchange · 2
API: https://socialmediatrends-api.osmike.com/v1/trends/1620862