CVE-2023-22524
published 2023-12-06CVE-2023-22524: Certain versions of the Atlassian Companion App for MacOS were affected by a remote code execution vulnerability. An attacker could utilize WebSockets to…
PriorityP272critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
24.73%
97.7th percentile
Certain versions of the Atlassian Companion App for MacOS were affected by a remote code execution vulnerability. An attacker could utilize WebSockets to bypass Atlassian Companion’s blocklist and MacOS Gatekeeper to allow execution of code.
Affected
20 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| atlassian | companion | >= 1.0.0 < 2.0.0 | 2.0.0 |
| atlassian | companion_for_mac | — | — |
| atlassian | companion_for_mac | — | — |
| atlassian | companion_for_mac | — | — |
| atlassian | companion_for_mac | — | — |
| atlassian | companion_for_mac | — | — |
| atlassian | companion_for_mac | — | — |
| atlassian | companion_for_mac | — | — |
| atlassian | companion_for_mac | — | — |
| atlassian | companion_for_mac | — | — |
| atlassian | companion_for_mac | — | — |
| atlassian | companion_for_mac | — | — |
| atlassian | companion_for_mac | — | — |
| atlassian | companion_for_mac | — | — |
| atlassian | companion_for_mac | — | — |
| atlassian | companion_for_mac | — | — |
| atlassian | companion_for_mac | — | — |
| atlassian | companion_for_mac | — | — |
| atlassian | companion_for_mac | — | — |
| atlassian | companion_for_mac | — | — |
Detection & IOCsextracted from sources · hover to see the quote
- →All versions of the Atlassian Companion App for macOS prior to 2.0.0 are vulnerable; detect presence of outdated versions (< 2.0.0) on macOS endpoints as a risk indicator. ↗
- ·If the Atlassian Companion App for macOS cannot be patched to 2.0.0 immediately, Atlassian recommends uninstalling the app entirely as the only available mitigation for CVE-2023-22524. ↗
CVSS provenance
nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv3.09.6CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
Checkpoint
11th December – Threat Intelligence Report
blogs_checkpoint·2023-12-11
CVE-2023-40088 11th December – Threat Intelligence Report
Latest Publications
CPR Podcast Channel
AI Research
Web 3.0 Security
Intelligence Reports
ThreatCloud AI
Threat Intelligence & Research
Zero Day Protection
Sandblast File Analysis
About Us
SUBSCRIBE
2026
2025
2024
2023
2022
2021
2020
2019
2018
2017
2016
## 11th December – Threat Intelligence Report
For the latest discoveries in cyber research for the week of 11th December, please download our Threat_Intelligence Bulletin .
TOP ATTACKS AND BREACHES
The American Greater Richmond Transit Company (GRTC), which provides services for millions of people, has been a victim of cyber-attack that impacted certain applications and parts of the GRTC network. The Play ransomware gang claimed responsibility for the attack.
Check Point Harmony Endpoint and Threat Emulation prov
Bleepingcomputer
Atlassian patches critical RCE flaws across multiple products
blogs_bleepingcomputer·2023-12-06·CVSS 8.3
[HIGH] Atlassian patches critical RCE flaws across multiple products
## Atlassian patches critical RCE flaws across multiple products
## Bill Toulas
Atlassian has published security advisories for four critical remote code execution (RCE) vulnerabilities impacting Confluence, Jira, and Bitbucket servers, along with a companion app for macOS.
All security issues addressed received a critical-severity score of at least 9.0 out of 10, based on Atlassian's internal assessment. However, the company advises companies to evaluate applicability according to their IT environment.
The company marked none of the security issues as being exploited in the wild. However, due to the popularity of Atlassian products and their extensive deployment in corporate environments, system administrators should prioritize applying the available updates.
The set of four RCE vuln
https://confluence.atlassian.com/security/cve-2023-22524-rce-vulnerability-in-atlassian-companion-app-for-macos-1319249492.htmlhttps://jira.atlassian.com/browse/CONFSERVER-93518https://confluence.atlassian.com/security/cve-2023-22524-rce-vulnerability-in-atlassian-companion-app-for-macos-1319249492.htmlhttps://jira.atlassian.com/browse/CONFSERVER-93518
2023-12-06
Published