Impact
The misinterpretation of backslash authority in the validate_url_for_ssrf function creates a server‑side request forgery vulnerability. A crafted URL that appears externally valid can cause the MCP Atlassian server to connect to an internal host, allowing an attacker to retrieve or manipulate protected resources. This flaw conforms to CWE‑918 (Server‑side Request Forgery) and can compromise confidentiality and integrity of internal services accessed by the server.
Affected Systems
The vulnerability affects the MCP Atlassian server from the sooperset:mcp-atlassian product before version 0.22.0. These servers are commonly used to provide integration with Atlassian Confluence and Jira, so any deployment of older releases exposes potentially privileged internal endpoints.
Risk and Exploitability
The CVSS score of 8.8 indicates high severity. Because no EPSS score is available, the current exploitation probability is unknown, and the vulnerability is not yet listed in the CISA KEV catalog. Likely attack vectors involve submitting a malicious URL during the header‑based authentication flow, which can be executed by an attacker with access to the MCP interface. Successful exploitation would give the attacker the ability to reach internal network resources that are otherwise inaccessible from the outside.
OpenCVE Enrichment