CVE-2026-77250 | sooperset MCP Atlassian up to 0.21.x OAuthConfig oauth-.json OAuthConfig._save_tokens access_token/refresh_token permission

SecurityVulns

A vulnerability described as problematic has been identified in sooperset MCP Atlassian up to 0.21.x. This issue affects the function OAuthConfig._save_tokens of the file .mcp-atlassian/oauth-.json of the component OAuthConfig. The manipulation of the argument access_token/refresh_token results in permission issues.

This vulnerability was named CVE-2026-77250. The attack needs to be approached locally. There is no available exploit.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More