🔐 CVE Alert

CVE-2023-22524

CRITICAL 9.6
CVSS Score
9.6
EPSS Score
0.0%
EPSS Percentile
0th

Certain versions of the Atlassian Companion App for MacOS were affected by a remote code execution vulnerability. An attacker could utilize WebSockets to bypass Atlassian Companion’s blocklist and MacOS Gatekeeper to allow execution of code.

Vendor atlassian
Product companion for mac
Ecosystems
Industries
TechnologyEnterprise
Published Dec 6, 2023
Last Updated Feb 25, 2026
Stay Ahead of the Next One

Get instant alerts for atlassian companion for mac

Be the first to know when new critical vulnerabilities affecting atlassian companion for mac are published — delivered to Slack, Telegram or Discord.

Get Free Alerts → Free · No credit card · 60 sec setup

CVSS v3 Breakdown

CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H

Affected Versions

Atlassian / Companion for Mac
>= 1.0.0 >= 1.1.0 >= 1.2.0 >= 1.2.2 >= 1.2.3 >= 1.2.4 >= 1.2.5 >= 1.2.6 >= 1.3.0 >= 1.3.1 >= 1.4.1 >= 1.4.2 >= 1.4.3 >= 1.4.4 >= 1.4.5 >= 1.4.6 >= 1.5.0 >= 1.6.0 >= 1.6.1

References

NVD ↗ CVE.org ↗ EPSS Data ↗
confluence.atlassian.com: https://confluence.atlassian.com/security/cve-2023-22524-rce-vulnerability-in-atlassian-companion-app-for-macos-1319249492.html jira.atlassian.com: https://jira.atlassian.com/browse/CONFSERVER-93518