{"data":{"id":"b24043ba-3b82-45de-aada-8a8923f21112","title":"GHSA-f6pj-qv47-g96w: MCP Atlassian: Arbitrary server-local file upload to Jira/Confluence attachments via unrestricted file_path parameters","summary":"The MCP Atlassian tool for Jira and Confluence has a vulnerability where the file upload functions accept file paths controlled by the caller and read those files from the server's local filesystem before uploading them as attachments. This means an attacker using the tool can trick the server into reading and uploading any file the server process can access, especially in HTTP or multi-user deployments where the caller and server are separate security boundaries.","solution":"N/A -- no mitigation discussed in source.","labels":["security"],"sourceUrl":"https://github.com/advisories/GHSA-f6pj-qv47-g96w","publishedAt":"2026-09-22T20:36:29.000Z","cveId":"CVE-2026-77247","cweIds":null,"cvssScore":null,"cvssSeverity":"high","severity":"high","attackType":["supply_chain"],"issueType":"vulnerability","affectedPackages":["mcp-atlassian@< 0.22.0 (fixed: 0.22.0)"],"affectedVendors":[],"affectedVendorsRaw":["Atlassian","MCP","Jira","Confluence"],"classifierModel":"claude-haiku-4-5-20251001","classifierPromptVersion":"v3","cvssVector":null,"attackVector":null,"attackComplexity":null,"privilegesRequired":null,"userInteraction":null,"exploitMaturity":"unknown","epssScore":0,"patchAvailable":true,"disclosureDate":"2026-09-22T20:36:29.000Z","capecIds":null,"crossRefCount":0,"attackSophistication":"trivial","impactType":["confidentiality","integrity"],"aiComponentTargeted":"agent","llmSpecific":false,"classifierConfidence":0.85,"researchCategory":null,"atlasIds":["AML.T0010"]}}