jetbrains

543 tracked vulnerabilities.

CVE-2025-64773 LOW
JetBrains YouTrack < 2025.3.104432 - Race Condition Bypass of Helpdesk Agent Limit
Nov 11, 2025
CVSS 2.7
EPSS 0.00
CVE-2025-64685 HIGH
JetBrains YouTrack < 2025.3.104432 - Improper TLS Certificate Validation
Nov 10, 2025
CVSS 8.1
EPSS 0.00
CVE-2025-64684 MEDIUM
JetBrains YouTrack < 2025.3.104432 - Information Disclosure via Feedback Form
Nov 10, 2025
CVSS 4.3
EPSS 0.00
CVE-2025-64683 MEDIUM
JetBrains Hub < 2025.3.104432 - Information Disclosure via Users API
Nov 10, 2025
CVSS 5.3
EPSS 0.00
CVE-2025-64682 LOW
JetBrains Hub < 2025.3.104432 - Race Condition Bypass of Agent-User Limit
Nov 10, 2025
CVSS 2.7
EPSS 0.00
CVE-2025-64681 LOW
JetBrains Hub < 2025.3.104992 - Missing Authorization via Invitation Race Condition
Nov 10, 2025
CVSS 2.7
EPSS 0.00
CVE-2025-64457 MEDIUM
JetBrains dotTrace ReSharper and Rider < 2025.2.5 - Local Privilege Escalation via Race Condition
Nov 10, 2025
CVSS 4.2
EPSS 0.00
CVE-2025-64456 HIGH
JetBrains ReSharper < 2025.2.4 - Local Privilege Escalation via Missing DPA Collector Signature Verification
Nov 10, 2025
CVSS 8.4
EPSS 0.00
CVE-2025-59458 HIGH
JetBrains Junie < 243.284.50 - Remote Code Execution via Improper Command Validation
Sep 17, 2025
CVSS 8.3
EPSS 0.00
CVE-2025-59457 HIGH
JetBrains TeamCity <2025.07.2 - Info Disclosure
Sep 17, 2025
CVSS 7.7
EPSS 0.00
CVE-2025-59456 MEDIUM
JetBrains TeamCity < 2025.07.2 - Path Traversal via Project Archive Upload
Sep 17, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-59455 MEDIUM
JetBrains TeamCity < 2025.07.2 - Project Isolation Bypass via Race Condition
Sep 17, 2025
CVSS 4.2
EPSS 0.00
CVE-2025-58335 MEDIUM
JetBrains Junie <252.284.66 - Info Disclosure
Aug 28, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-58334 HIGH
JetBrains IDE Services <2025.5.0.1086 - Privilege Escalation
Aug 28, 2025
CVSS 8.1
EPSS 0.00
CVE-2025-57734 MEDIUM
JetBrains TeamCity <2025.07.1 - Info Disclosure
Aug 20, 2025
CVSS 4.3
EPSS 0.00
CVE-2025-57733 MEDIUM
JetBrains TeamCity < 2025.07.1 - SMTP Injection via Email Content Modification
Aug 20, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-57732 HIGH
JetBrains TeamCity < 2025.07.1 - Privilege Escalation via Incorrect Directory Ownership
Aug 20, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-57731 HIGH
JetBrains YouTrack < 2025.2.92387 - Stored Cross-Site Scripting via Mermaid Diagram Content
Aug 20, 2025
CVSS 8.7
EPSS 0.00
CVE-2025-57730 MEDIUM
JetBrains IntelliJ IDEA < 2025.2.0 - HTML Injection via Remote Development Feature
Aug 20, 2025
CVSS 5.2
EPSS 0.00
CVE-2025-57729 MEDIUM
JetBrains IntelliJ IDEA <2025.2 - DoS
Aug 20, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-57728 MEDIUM
JetBrains IntelliJ IDEA < 2025.2 - Unauthenticated Hidden File Discovery via Code With Me Guest Access
Aug 20, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-57727 MEDIUM
JetBrains IntelliJ IDEA < 2025.2 - Cleartext Transmission of Sensitive Information via Remote Reference
Aug 20, 2025
CVSS 4.7
EPSS 0.00
CVE-2025-54538 MEDIUM
JetBrains TeamCity < 2025.07 - Cleartext Storage of Sensitive Information via hg pull Command
Jul 28, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-54537 MEDIUM
JetBrains TeamCity < 2025.07 - Cleartext Storage of Sensitive Information in Memory Snapshots
Jul 28, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-54536 MEDIUM
JetBrains TeamCity < 2025.07 - Cross-Site Request Forgery via GraphQL Endpoint
Jul 28, 2025
CVSS 5.4
EPSS 0.00