Microsoft has linked the exploitation of a recently disclosed critical flaw in Atlassian Confluence Data Center and Server to a nation-state actor it tracks as Storm-0062 (aka DarkShadow or Oro0lxy).
The tech giant’s threat intelligence team said it observed in-the-wild abuse of the vulnerability since September 14, 2023.
“CVE-2023-22515 is a critical privilege escalation vulnerability in