Atlassian Rovo Can Be Tricked Into Sending Jira and Confluence Data to Attackers
Atlassian's Rovo assistant can gather Jira or Confluence data that a signed-in user can access and send it to an external server under attacker-controlled commands. That behavior was independently discovered by two security firms using distinct methods. There is only one confirmed closed route among those.
The instructions were concealed in information that Rovo reads by PromptArmor, an AI security company. It stated that the assistant might collect internal data from an uploaded file and send it out via a URL request without the need for an additional permission step.
On August 5, 2026, the company reported that the chain continued to operate with Rovo's web-search feature turned off. The report only determines the finding's status on that date because the bypass is single-sourced;...

