ThreatCluster[verified]@threatclusterActive Exploitation
The text claims that Atlassian Confluence Server and Data Center zero‑day flaws CVE-2022-26134 and CVE-2023-22515 are being actively exploited in the wild by multiple actors.
Loginsoft Threat Intel@Loginsoft_IntelActive Exploitation
Cytellite reports recent detection of exploitation activity targeting CVE‑2022‑26134, but no PoC, exploit code, or patching information is provided.
TI Mindmap HUB@ti_mindmap_hubActive Exploitation
The post reports that CVE-2026-41940 has been actively exploited at scale for root cPanel takeovers; concurrently, CVE-2022-26134 is weaponized, but no PoC, exploit code, patch, or technical details are provided.
David@davidsheyiActive Exploitation
The post indicates that APT41 is actively exploiting CVE-2022-26134, highlighting real-world use of the vulnerability.
Sun4lower@LittleSun4lowerPoC
The TryHackMe lab demonstrates the Atlassian CVE‑2022‑26134 un‑authenticated RCE in Confluence Server/Data Center, but no exploit instructions, live attacks, or patches are included.
VampireXRay@VampireXrayGeneral
The text refers to CVE‑2022‑26134 and links to a Medium article discussing the Confluence RCE, but it does not provide specific proof‑of‑concept details, exploit code, or mitigation steps.
317ON13_LIRW@ToTo13ru_xakepGeneral
The post announces a TryHackMe lab that demonstrates Atlassian CVE‑2022‑26134, an unauthenticated RCE in Confluence, but contains no PoC, exploit tool, active‑exploitation, or patch information.
Ezekiel@Ezekieluche_General
The post announces completion of a TryHackMe lab that demonstrates Atlassian CVE-2022-26134, an unauthenticated RCE in Confluence Server and Data Center, but provides no exploit code, patch info, or evidence of active exploitation.