CVE-2016-6668: Atlassian Confluence Server
High severity, CVSS 7.5. EPSS: 3.8% chance of exploitation in the next 30 days.
The Atlassian Hipchat Integration Plugin for Bitbucket Server 6.26.0 before 6.27.5, 6.28.0 before 7.3.7, and 7.4.0 before 7.8.17; Confluence HipChat plugin 6.26.0 before 7.8.17; and HipChat for JIRA plugin 6.26.0 before 7.8.17 allows remote attackers to obtain the secret key for communicating with HipChat instances by reading unspecified pages.
Affected products
- Atlassian Confluence Server: version 5.5.0 only; version 5.9.1 only; version 5.9.2 only; version 5.9.3 only; version 5.9.4 only; version 5.9.5 only; …
- Atlassian Jira Integration For Hipchat: version 6.26.0 only; version 6.26.10 only; version 6.29.1 only; version 6.29.2 only; version 6.31.0 only; version 7.1.0 only; …
Published 2017-01-23. Last modified 2026-06-17.