jetbrains

543 tracked vulnerabilities.

CVE-2023-34229 MEDIUM
JetBrains TeamCity < 2023.05 - Stored Cross-Site Scripting in GitLab Connection Page
May 31, 2023
CVSS 4.6
EPSS 0.00
CVE-2023-34228 MEDIUM
JetBrains TeamCity <2023.05 - Auth Bypass
May 31, 2023
CVSS 5.3
EPSS 0.00
CVE-2023-34227 MEDIUM
JetBrains TeamCity < 2023.05 - Brute Force Attack via Specific Endpoint
May 31, 2023
CVSS 5.3
EPSS 0.00
CVE-2023-34226 MEDIUM
JetBrains TeamCity < 2023.05 - Reflected Cross-Site Scripting in Subscriptions Page
May 31, 2023
CVSS 4.6
EPSS 0.00
CVE-2023-34225 MEDIUM
JetBrains TeamCity < 2023.05 - Stored Cross-Site Scripting in NuGet Feed Page
May 31, 2023
CVSS 4.6
EPSS 0.05
CVE-2023-34224 MEDIUM
JetBrains TeamCity < 2023.05 - Open Redirect via OAuth Configuration
May 31, 2023
CVSS 4.8
EPSS 0.00
CVE-2023-34223 MEDIUM
JetBrains TeamCity < 2023.05 - Sensitive Information Disclosure in Log Files
May 31, 2023
CVSS 4.3
EPSS 0.00
CVE-2023-34222 MEDIUM
JetBrains TeamCity < 2023.05 - Cross-Site Scripting via Plugin Vendor URL
May 31, 2023
CVSS 4.6
EPSS 0.00
CVE-2023-34221 MEDIUM
JetBrains TeamCity < 2023.05 - Stored Cross-Site Scripting in Show Connection Page
May 31, 2023
CVSS 4.6
EPSS 0.00
CVE-2023-34220 MEDIUM
JetBrains TeamCity < 2023.05 - Stored Cross-Site Scripting in Commit Status Publisher
May 31, 2023
CVSS 4.6
EPSS 0.05
CVE-2023-34219 MEDIUM
JetBrains TeamCity < 2023.05 - Improper Authorization via REST API
May 31, 2023
CVSS 4.3
EPSS 0.00
CVE-2023-34218 CRITICAL
JetBrains TeamCity < 2023.05 - Incorrect Authorization Bypass
May 31, 2023
CVSS 9.1
EPSS 0.00
CVE-2022-48481 MEDIUM
JetBrains Toolbox App <1.28 - Code Injection
Apr 28, 2023
CVSS 5.2
EPSS 0.00
CVE-2022-48477 MEDIUM
JetBrains Hub < 2023.1.15725 - Server-Side Request Forgery in Auth Module Integration
Apr 24, 2023
CVSS 4.1
EPSS 0.00
CVE-2022-48476 HIGH
JetBrains Ktor < 2.3.0 - Path Traversal via resolveResource Method
Apr 24, 2023
CVSS 7.5
EPSS 0.00
CVE-2022-48435 LOW
JetBrains PhpStorm < 2023.1 - Sensitive Information Disclosure in Log File
Apr 04, 2023
CVSS 3.3
EPSS 0.00
CVE-2022-48433 MEDIUM
JetBrains IntelliJ IDEA < 2023.1 - NTLM Hash Exposure via Built-in Web Server API
Mar 29, 2023
CVSS 6.1
EPSS 0.00
CVE-2022-48432 MEDIUM
JetBrains IntelliJ IDEA <2023.1 - Info Disclosure
Mar 29, 2023
CVSS 5.2
EPSS 0.00
CVE-2022-48431 MEDIUM
JetBrains IntelliJ IDEA < 2023.1 - Insufficient Verification of Data Authenticity
Mar 29, 2023
CVSS 4.5
EPSS 0.00
CVE-2022-48430 MEDIUM
JetBrains IntelliJ IDEA < 2023.1 - Unauthorized File Content Disclosure via Markdown Preview External Stylesheet
Mar 29, 2023
CVSS 5.5
EPSS 0.00
CVE-2022-48428 MEDIUM
JetBrains TeamCity < 2022.10.3 - Stored Cross-Site Scripting on SSH Keys Page
Mar 27, 2023
CVSS 4.6
EPSS 0.01
CVE-2022-48427 MEDIUM
JetBrains TeamCity < 2022.10.3 - Stored Cross-Site Scripting on Pending Changes and Changes Tabs
Mar 27, 2023
CVSS 4.6
EPSS 0.00
CVE-2022-48429 MEDIUM
JetBrains Hub < 2022.1.15583 - Reflected Cross-Site Scripting in Dashboards
Mar 27, 2023
CVSS 4.6
EPSS 0.00
CVE-2022-48426 MEDIUM
JetBrains TeamCity - Stored Cross-Site Scripting in Perforce Connection Settings
Mar 27, 2023
CVSS 4.6
EPSS 0.00
CVE-2022-48344 MEDIUM
JetBrains TeamCity < 2022.10.2 - Cross-Site Scripting in Group Creation Process
Feb 23, 2023
CVSS 5.4
EPSS 0.00