Disclosure summary
This High severity DoS (Denial of Service) vulnerability was introduced in version 2.0 of Confluence Data Center. This DoS (Denial of Service) vulnerability, with a CVSS Score of 8.3, allows an attacker to cause a resource to be unavailable for its intended users by temporarily or indefinitely disrupting services of a host connected to a network. Atlassian recommends that Confluence Data Center customers upgrade to latest version, if you are unable to do so, upgrade your instance to one of the specified supported fixed versions: Confluence Data Center and Server 8.5: Upgrade to a release greater than or equal to 8.5.25 Confluence Data Center and Server 9.2: Upgrade to a release greater than or equal to 9.2.7 Confluence Data Center and Server 10.0: Upgrade to a release greater than or equal to 10.0.2 See the release notes ([https://confluence.atlassian.com/doc/confluence-release-notes-327.html]). You can download the latest version of Confluence Data Center from the download center ([https://www.atlassian.com/software/confluence/download-archives]). This vulnerability was reported via our Atlassian (Internal) program.
Source-reported weakness categories
CWE-405
Source-specific records & product guidance
Sources retain their own attribution and scoring. Follow the original record to confirm affected versions, fixed releases, and configuration conditions.
NIST National Vulnerability Database · NVD-CVE-2025-22166
Open original source · Updated Oct 08, 2026
Only CPE matches marked vulnerable=true are indexed. AND/OR platform conditions must be checked in the original NVD record.
| Vendor | Product / association | Version / bounds |
|---|---|---|
| atlassian | confluence_data_center | * {"versionStartIncluding":"10.0.0","versionEndExcluding":"10.0.2"} |
| atlassian | confluence_server | * {"versionStartIncluding":"10.0.0","versionEndExcluding":"10.0.2"} |
Original records & references
- NIST NVD record
- CVE Program record
- confluence.atlassian.com — Vendor Advisory
- jira.atlassian.com — Vendor Advisory
PUBLISHED 2025-10-21T12:15:37-04:00
MODIFIED 2026-10-08T07:10:00-04:00
INGESTED 2026-10-08T12:30:43-04:00