DEV Community

Achin Bansal
Achin Bansal

Posted on • Originally published at gridthegrey.com

Atlassian Rovo Prompt Injection Leaks Jira Data to Attackers

Forensic Summary

Two independent security firms discovered that Atlassian's Rovo AI assistant can be manipulated through indirect prompt injection to exfiltrate Jira and Confluence data to attacker-controlled servers. PromptArmor demonstrated a file-borne injection chain requiring no separate approval step, while Varonis uncovered a URL parameter flaw (RovoBlast) that preloads attacker instructions into Rovo Chat with a single authenticated click. The link-parameter vulnerability was patched server-side by Atlassian on July 8, 2026, but the content-borne injection path lacks a direct patch.


Read the full technical deep-dive on Grid the Grey: https://gridthegrey.com/posts/atlassian-rovo-prompt-injection-leaks-jira-data-to-attackers/

Top comments (0)