CVE-2026-77267: CWE-918: Server-Side Request Forgery (SSRF) in sooperset mcp-atlassian
CVE-2026-77267 is a Server-Side Request Forgery (SSRF) vulnerability in the MCP Atlassian server component used for Atlassian products like Confluence and Jira. Versions prior to 0.22.0 improperly process certain HTTP headers (X-Atlassian-Jira-Url and X-Atlassian-Confluence-Url) without validating URLs for SSRF, allowing an attacker who can set these headers to cause the server to send requests to internal or metadata-service URLs. This vulnerability bypasses previous remediation efforts and is fixed in version 0.22.0.
AI Analysis
Technical Summary
The MCP Atlassian server prior to version 0.22.0 processes the X-Atlassian-Jira-Url and X-Atlassian-Confluence-Url headers in the _process_authentication_headers function without invoking the validate_url_for_ssrf function. This omission allows an attacker capable of setting these headers to supply URLs pointing to internal or metadata services, causing the server to make unintended requests to those destinations. This SSRF vulnerability bypasses the incomplete remediation applied for CVE-2026-27826. The issue is resolved in version 0.22.0 by properly validating these URLs.
Potential Impact
An attacker with the ability to set the specified headers can exploit this vulnerability to make the MCP Atlassian server send requests to internal network resources or metadata services. This can lead to unauthorized access to internal services or sensitive information exposure. The CVSS 4.0 score is 8.3 (high severity), indicating a network attack vector with low complexity and no required privileges or user interaction, but with high confidentiality impact.
Mitigation Recommendations
Upgrade MCP Atlassian to version 0.22.0 or later, where this SSRF vulnerability is fixed by proper URL validation. No other mitigation is indicated or required according to the vendor advisory. Patch status is confirmed fixed in 0.22.0.
CVE-2026-77267: CWE-918: Server-Side Request Forgery (SSRF) in sooperset mcp-atlassian
Description
CVE-2026-77267 is a Server-Side Request Forgery (SSRF) vulnerability in the MCP Atlassian server component used for Atlassian products like Confluence and Jira. Versions prior to 0.22.0 improperly process certain HTTP headers (X-Atlassian-Jira-Url and X-Atlassian-Confluence-Url) without validating URLs for SSRF, allowing an attacker who can set these headers to cause the server to send requests to internal or metadata-service URLs. This vulnerability bypasses previous remediation efforts and is fixed in version 0.22.0.
CVSS v4.0
Score 8.3high
Affected software
sooperset
mcp-atlassian
pkg:github/sooperset/mcp-atlassianRun on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.
Weaknesses
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
The MCP Atlassian server prior to version 0.22.0 processes the X-Atlassian-Jira-Url and X-Atlassian-Confluence-Url headers in the _process_authentication_headers function without invoking the validate_url_for_ssrf function. This omission allows an attacker capable of setting these headers to supply URLs pointing to internal or metadata services, causing the server to make unintended requests to those destinations. This SSRF vulnerability bypasses the incomplete remediation applied for CVE-2026-27826. The issue is resolved in version 0.22.0 by properly validating these URLs.
Potential Impact
An attacker with the ability to set the specified headers can exploit this vulnerability to make the MCP Atlassian server send requests to internal network resources or metadata services. This can lead to unauthorized access to internal services or sensitive information exposure. The CVSS 4.0 score is 8.3 (high severity), indicating a network attack vector with low complexity and no required privileges or user interaction, but with high confidentiality impact.
Mitigation Recommendations
Upgrade MCP Atlassian to version 0.22.0 or later, where this SSRF vulnerability is fixed by proper URL validation. No other mitigation is indicated or required according to the vendor advisory. Patch status is confirmed fixed in 0.22.0.
Technical Details
- Data Version
- 5.2
- Assigner Short Name
- GitHub_M
- Date Reserved
- 2026-08-20T19:14:21.330Z
- Cvss Version
- 4.0
- State
- PUBLISHED
Threat ID: 6ab2c2eef7a7c541068b81d2
Added to database: 09/22/2026, 18:03:26 UTC
Last enriched: 09/22/2026, 18:18:07 UTC
Last updated: 09/22/2026, 19:46:47 UTC
Views: 5
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.