Confluence Data Center

Atlassian · current 10.2.19

Are you Atlassian? Claim this page

The current version of Confluence Data Center is 10.2.19 (as of 05/10/2026). patchletter checks the official source daily and emails you new releases.

Actively exploited vulnerabilities

The US cybersecurity agency CISA lists these vulnerabilities in its catalog of Known Exploited Vulnerabilities. What CISA does not carry does not appear in this list — even where it is being exploited.

  • CVE-2021-26084Atlassian Confluence Server and Data Center Object-Graph Navigation Language (OGNL) Injection VulnerabilityRansomware

    9.8 critical · over the network, without login · CISA deadline was 17 Nov 21

  • CVE-2022-26134Atlassian Confluence Server and Data Center Remote Code Execution VulnerabilityRansomware

    9.8 critical · over the network, without login · CISA deadline was 6 Jun 22

  • CVE-2023-22515Atlassian Confluence Data Center and Server Broken Access Control VulnerabilityRansomware

    9.8 critical · over the network, without login · CISA deadline was 13 Oct 23

  • CVE-2023-22518Atlassian Confluence Data Center and Server Improper Authorization VulnerabilityRansomware

    9.8 critical · over the network, without login · CISA deadline was 28 Nov 23

  • CVE-2023-22527Atlassian Confluence Data Center and Server Template Injection VulnerabilityRansomware

    9.8 critical · over the network, without login · CISA deadline was 14 Feb 24

  • CVE-2019-3398Atlassian Confluence Server and Data Center Path Traversal Vulnerability

    8.8 high · over the network, with a basic account · CISA deadline was 3 May 22

Source: CISA KEV. The CVE is matched to the product automatically — when in doubt, the linked NVD entry applies.

BSI security advisories

Advisories the German BSI (CERT-Bund) published for this product. Whether your version is affected is stated in the advisory itself.

All BSI advisories →

Confluence Data Center at a glance

Confluence is Atlassian's widely used team wiki and collaboration platform, common for internal documentation. Atlassian ships regular releases of the self-managed Data Center product plus frequent security advisories; as a system holding sensitive internal knowledge and often internet-facing, prompt patching is essential.

For admins the security advisories are the rhythm: Confluence has been the target of serious, actively exploited vulnerabilities, so apply security releases immediately, especially on any internet-facing instance. Updates run database migrations — back up the database and home directory first, and follow the documented upgrade path, minding app (plugin) compatibility. Keep Confluence behind SSO with strong authentication and, ideally, off the open internet. Apps carry their own updates and risk. After upgrading, verify login, spaces and apps. Track the version and its support window, and subscribe to Atlassian security advisories; patchletter surfaces new Confluence releases.

Support cycles (endoflife.date)

CycleLatest versionStatus
10.2LTS10.2.19EOL 2 Dec 27
10.110.1.2EOL 7 Oct 27
10.010.0.3EOL 5 Aug 27
9.59.5.4EOL 4 Jun 27
9.49.4.1EOL 1 Apr 27
9.39.3.2EOL 4 Feb 27
9.2LTS9.2.26EOL in 60 days
9.19.1.1End of Life

Version history & changelog · as detected by patchletter

VersionChannelDateNotes
10.2.19LTS05/10/2026–
10.2.18LTS08/09/2026–
10.2.17LTS06/09/2026–
10.2.16LTS01/09/2026–
10.2.15LTS04/08/2026–
10.2.14LTS09/07/2026–
10.2.13LTS02/06/2026–

Frequently asked questions

What is the latest version of Confluence Data Center?
Confluence Data Center 10.2.19, released 05/10/2026. patchletter checks the vendor's official source daily for new releases.
Where can I find the Confluence Data Center release notes?
The version history above links to the vendor's official release notes where the vendor publishes them. patchletter deliberately stores no vendor full texts.
How do I get notified about new Confluence Data Center updates?
Tick Confluence Data Center off in the catalogue and leave your address. From then on new versions go out by email — one at a time, or bundled in the daily or weekly digest.

An email as soon as a new Confluence Data Center version ships

We reconcile the vendor source daily. When a new version appears, it lands in your inbox right away or bundled as a digest. The update email is free and ends with one click. Alerts about vulnerabilities and end of support are part of patchletter Pro.

Embed this badge

The badge shows the current Confluence Data Center version and keeps it up to date. Anyone may embed it, no account needed.

Confluence Data Center badge
[![Confluence Data Center](https://patchletter.com/badge/confluence.svg)](https://patchletter.com/en/software/confluence)
https://patchletter.com/badge/confluence.svg

Also available: ?v=eol (end of support) and ?v=cve (actively exploited).

Related tools in Collaboration & Communication