Urgent.News

What's breaking now, across thousands of outlets.

Tech

Critical Atlassian Flaw Lets Unauthenticated Attackers Read Known Files Across 8 Products

A critical flaw in 8 Atlassian Data Center products, which customers host themselves, allows an attacker with no login access to read specific files in each product's web application root directory. The attacker must already know a file's exact name and path and cannot list what the directory holds. Atlassian disclosed the flaw, CVE-2026-21589, on October 5, rated it 9.3 out of 10, and

Critical Atlassian Flaw Lets Unauthenticated Attackers Read Known Files Across 8 Products

We haven't written up this one. The Hacker News has the full story — the link below goes straight to it.

This story

This is one outlet's version. Read the fullest account.

Read the original at thehackernews.com →

More in Tech

Oh Dear alternative? Uptime green is not Core Web Vitals portfolio monitoring

The uptime dashboard is green, SSL is fine, and the status page is quiet, yet a client still forwards a PageSpeed Insights screenshot where mobile Largest Contentful Paint sits in Needs improvement.

  • Uptime green does not guarantee good Core Web Vitals performance
  • Largest Contentful Paint (LCP) needs improvement despite green uptime
  • Uptime and Core Web Vitals are distinct metrics, not interchangeable

Your Global Store Is a Junk Drawer. Sort State Into Four Boxes First

If everything lives in the store, nothing really lives in the store. I have watched senior engineers, people with a decade on their resume, answer "how do you structure state in a complex app" by…

  • Sort state into four categories: server, URL, local UI, persisted
  • Server state like cache, use query libraries for stale-while-revalidate
  • URL state for data shareable through link, use query parameters

More from Tuesday 6 October →