📣 Send us your press release
Site updates every 15 minutes
Technology

Picus Security Adds Atlassian Confluence Exploit Simulation

Cybersecurity firm Picus Security has updated its threat library with attack simulations and prevention signatures for the critical Atlassian Confluence CVE-2021-26084 vulnerability.

28 September 2026

Picus Security has released updates to its platform to address the critical remote code execution vulnerability, CVE-2021-26084, affecting Atlassian Confluence Server and Data Center.

The company's Picus Threat Library now includes attack simulations for the OGNL injection flaw, while the Picus Mitigation Library offers prevention signatures for network security controls. This allows organizations using the Picus Continuous Security Validation Platform to test and strengthen their defenses against the exploit.

The CVE-2021-26084 vulnerability, which received a critical CVSSv3 score of 9.8, allows unauthenticated attackers to execute arbitrary code on vulnerable Confluence instances. Public exploit code became available shortly after Atlassian disclosed the issue on August 25, 2021.

Picus Security advises organizations to patch their Confluence installations and implement relevant prevention signatures. The company's platform enables continuous validation of security controls against known threats.

Original source: picussecurity.com