AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2021-39114

HIGH · CVSS 8.8 EPSS 1.66%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2022-04-05 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2021-39114
Severity
HIGH
CVSS
8.8
EPSS
1.66%
Java

Original NVD Description

Affected versions of Atlassian Confluence Server and Data Center allow users with a valid account on a Confluence Data Center instance to execute arbitrary Java code or run arbitrary system commands by injecting an OGNL payload. The affected versions are before version 6.13.23, from version 6.14.0 before 7.4.11, from version 7.5.0 before 7.11.6, and from version 7.12.0 before 7.12.5.