Impact
The MCP Atlassian server builds Atlassian fetchers from the X‑Atlassian‑Jira‑Url and X‑Atlassian‑Confluence‑Url headers without calling the URL‑validation routine, allowing a remote caller to supply internal or metadata‑service URLs and force the server to issue requests to those destinations. This bypasses the incomplete remediation of CVE‑2026‑27826 and can expose internal network resources or sensitive metadata to an attacker, potentially enabling data exfiltration or internal system compromise.
Affected Systems
sooperset’ MCP Atlassian server, versions earlier than 0.22.0
Risk and Exploitability
The CVSS score of 8.3 indicates high severity. Based on the description, the likely attack vector is remote over the network, and an attacker who can set custom HTTP headers can exploit this flaw with no special prerequisites. EPSS is not available, and the vulnerability is not listed in the CISA KEV catalog, so the assigned score reflects the inherent risk rather than known exploitation activity.
OpenCVE Enrichment
Github GHSA