Atlassian security advisory (AV26-829)
Serial Number: AV26-829 Date: August 19, 2026 As of August 18, 2026, Atlassian is affected by vulnerabilities in the following products: Bamboo Data Center and Server multiple versions Bitbucket Data Center and Server multiple versions Confluence Data Center and Server multiple versions Crowd Data Center and Server multiple versions Fisheye/Crucible all versions from 4.9.0 to 4.9.12 Jira Data Center and Server multiple versions Jira Service Management Data Center and Server multiple versions The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. Security Bulletin - August 18 2026 Security Advisories & Bulletins
CSIRTS triage
- What
- Multiple vulnerabilities affect Atlassian products including Bamboo, Bitbucket, Confluence, Crowd, Fisheye/Crucible, Jira, and Jira Service Management.
- Who is affected
- Atlassian Data Center and Server deployments; Fisheye/Crucible versions 4.9.0 to 4.9.12.
- Urgency
- Moderate priority; not currently being exploited but requires review and patching.
- Action
- Review Atlassian security advisories and apply updates as they become available.
AI-assisted analysis generated from the source advisory — verify against the original.
Details
Original advisory: https://cyber.gc.ca/en/alerts-advisories/atlassian-security-advisory-av26-829
More from Canadian Centre for Cyber Security
- unknownCitrix security advisory (AV26-833)2026-08-19
- unknownMLflow security advisory (AV26-832)2026-08-19
- criticalOracle Corporation security advisory (AV26-831)2026-08-19
- unknownNVIDIA security advisory (AV26-830)2026-08-19
- unknownApple security advisory (AV26-823) – Update 12026-08-18