Atlassian Rovo
AssessPlatforms
An AI assistant/agent for Atlassian products such as Jira and Confluence.
Why it's here
Placed in Assess: 1 article(s) of evidence from 1 source(s), led by security coverage, with 1 in the last 30 days. Confidence 24%. Low accumulated evidence, so it defaults conservatively pending more signal.
Evidence (1)
- 8Hacker News·8/5/2026securityAtlassian Rovo Vulnerable to Data Exfiltration via Prompt Injection
Researchers say Atlassian Rovo can be tricked by indirect prompt injection into exfiltrating Jira tickets and Confluence documents to an attacker-controlled URL. The attack can work without human approval and even when web search is disabled, because the URL-opening behavior remains exposed. PromptArmor disclosed the issue to Atlassian in May, but says the product remained vulnerable at publication time.