Critical Atlassian CVE Hits Jira,...

Critical Atlassian CVE Hits Jira, Confluence & Bitbucket, GitHub Copilot Sandboxing Goes GA, AWS Lambda SnapStart for Containers & Google Spanner Omni

Ship It Weekly - DevOps, SRE, Platform and Cloud Engineering... por Teller's Tech - DevOps, SRE and Cloud Podcast
E70
10 oct 2026
17:56

Notas del episodio

This week on Ship It Weekly: Atlassian disclosed a critical arbitrary file access vulnerability affecting eight Data Center products, including Jira, Confluence, Bitbucket, and Bamboo. GitHub Copilot local sandboxing is now generally available, giving teams enforceable controls around filesystem, network, credentials, and local tooling. AWS published a deeper look at Lambda SnapStart for container images, including the operational risks of restoring initialized state. And Google Spanner Omni is now generally available, bringing Spanner outside Google Cloud and putting more of the availability responsibility back on the customer.

The bigger theme this week is control. Developer tools are production infrastructure. AI agents need real execution boundaries, not just instructions. Faster startup through snapshots means understanding exactly what state is being restored. And moving a managed database onto your own infrastructure gives you portability, but also gives you the pager.

In the lightning round: Citrix has a NetScaler SAML vulnerability under active exploitation. Cloudflare is working toward becoming a publicly trusted certificate authority. And attackers are actively scanning for Rejetto HFS servers vulnerable to a flaw that can lead to account takeover and remote code execution.

And the human closer comes from Lorin Hochstein and a recent Google Cloud networking incident. One part of the outage involved someone correctly following an incorrect procedure, while another involved someone incorrectly following a correct one. Training matters, but systems also need guardrails that keep normal human mistakes from turning into large outages. If your system only works when nobody makes a mistake, the system is the problem.

Links

Atlassian CVE-2026-21589

https://tsn.io/ZlqKv

GitHub Copilot Local Sandboxing

https://tsn.io/rQngM

AWS Lambda SnapStart for Container Images

https://tsn.io/uXqkK

Google Spanner Omni GA

https://tsn.io/GoZZ5

Citrix NetScaler CVE-2026-88779

https://tsn.io/yN5a9

Cloudflare Certificate Authority

https://tsn.io/egMN5

Rejetto HFS CVE-2026-61500

https://tsn.io/oQrkU

Google Cloud Networking Incident

https://www.tellerstech.com/go/s-dc989ad2/

There Was a Light That Never Went Out

https://www.tellerstech.com/go/s-cb0bc459/

This Week’s On Call Brief

https://tsn.io/8yaIY

Ship It Weekly

https://tsn.io/NqkdP

On Call Brief

https://tsn.io/Gpz2d

Palabras clave

cloudflare
aws
github
Atlassian
Lambda
GitHub Copilot
SnapStart
Google Spanner
Citrix
Rejetto