PT-2026-71349 · Unknown · Mcp-Attlasian

CVE-2026-73498

·

Published

2026-07-10

·

Updated

2026-09-12

CVSS v3.1

7.7

High

VectorAV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions MCP Atlassian versions prior to 0.22.0
Description The software fails to call validate safe path when processing the file path variable within the confluence upload attachment tool. This occurs in the upload attachment direct() function located in src/mcp atlassian/confluence/attachments.py, where the client-supplied path is passed directly to the open() function. An authenticated client can exploit this to read any file accessible to the server process and exfiltrate it to Confluence as an attachment. Additionally, if an AI agent is induced to call this tool via untrusted content, sensitive server environment variables, such as CONFLUENCE API TOKEN, may be disclosed.
Recommendations Update to version 0.22.0.

Exploit

Fix

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-73498
GHSA-G5R6-GV6M-F5JV
PYSEC-2026-3683

Affected Products

Mcp-Attlasian