{
  "id": 12328455,
  "title": "Critical Atlassian Flaw Lets Unauthenticated Attackers Read Known Files Across 8 Products",
  "url": "https://urgent.news/2026/10/06/critical-atlassian-flaw-lets-unauthenticated-attackers-read-known",
  "topic": "tech",
  "section": "Tech",
  "published": "2026-10-06T06:58:56.000Z",
  "source": {
    "name": "The Hacker News",
    "slug": "the-hacker-news",
    "url": "https://thehackernews.com/2026/10/critical-atlassian-flaw-lets.html"
  },
  "original_language": "en",
  "account": null,
  "summary": "A critical flaw in 8 Atlassian Data Center products, which customers host themselves, allows an attacker with no login access to read specific files in each product's web application root directory. The attacker must already know a file's exact name and path and cannot list what the directory holds. Atlassian disclosed the flaw, CVE-2026-21589, on October 5, rated it 9.3 out of 10, and",
  "key_points": [],
  "editors_take": null,
  "illustration": null,
  "coverage": {
    "outlets": 2,
    "also_reported_by": [
      {
        "outlet": "The Hacker News",
        "title": "Microsoft Exchange Flaw Lets Authenticated Attackers Read Other Users' Mailboxes",
        "url": "https://urgent.news/2026/10/05/microsoft-exchange-flaw-lets-authenticated-attackers-read-other-users",
        "published": "2026-10-05T16:21:52.000Z"
      }
    ]
  },
  "ai_generated": true,
  "disclaimer": "Summaries, key points and the editor’s take are written by software from other outlets’ reporting and may contain errors — always check the linked original."
}