Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-xjgw-4wvw-rgm4
  • PyPI/mcp-atlassian
MCP Atlassian has an arbitrary file write leading to arbitrary code execution via unconstrained download_path in confluence_download_attachment 10 Mar
  • Fix available
  • Severity - 9.0 (Critical)
GHSA-7r34-79r5-rcc9
  • PyPI/mcp-atlassian
MCP Atlassian has SSRF via unvalidated X-Atlassian-Jira-Url / X-Atlassian-Confluence-Url headers 10 Mar
  • Fix available
  • Severity - 8.2 (High)