jetbrains

543 tracked vulnerabilities.

CVE-2019-12737 MEDIUM
JetBrains Ktor <1.2.0-rc - Info Disclosure
Oct 02, 2019
CVSS 5.3
EPSS 0.00
CVE-2019-12736 CRITICAL
JetBrains Ktor < 1.1.5 - Command Injection via LDAP Username
Oct 02, 2019
CVSS 9.8
EPSS 0.00
CVE-2019-12157 CRITICAL
JetBrains UpSource <2018.2.1293 - Info Disclosure
Oct 02, 2019
CVSS 9.8
EPSS 0.00
CVE-2019-12156 MEDIUM
JetBrains TeamCity <2018.2.5 - Info Disclosure
Oct 02, 2019
CVSS 5.3
EPSS 0.00
CVE-2019-15041 MEDIUM
JetBrains YouTrack < 2019.1.52545 - Open Redirect via Unbounded URL Whitelisting
Oct 01, 2019
CVSS 6.1
EPSS 0.00
CVE-2019-15035 MEDIUM
JetBrains TeamCity <2018.2.4 - Info Disclosure
Oct 01, 2019
CVSS 4.9
EPSS 0.00
CVE-2019-15042 HIGH
JetBrains TeamCity 2018.2.4 - Improper Certificate Validation
Oct 01, 2019
CVSS 7.5
EPSS 0.00
CVE-2019-14961 MEDIUM
JetBrains Upsource < 2019.1.1412 - Cross-Site Scripting in Code Block Comments
Oct 01, 2019
CVSS 6.1
EPSS 0.00
CVE-2019-15038 HIGH
JetBrains TeamCity <2019.1 - Info Disclosure
Oct 01, 2019
CVSS 7.5
EPSS 0.00
CVE-2019-14960 HIGH
JetBrains Rider < 2019.1.2 - Untrusted Search Path
Oct 01, 2019
CVSS 7.8
EPSS 0.00
CVE-2019-14957 MEDIUM
JetBrains Vim <0.52 - Info Disclosure
Oct 01, 2019
CVSS 5.3
EPSS 0.00
CVE-2019-14955 MEDIUM
JetBrains Hub < 2018.4.11436 - Weak Password Recovery Mechanism
Oct 01, 2019
CVSS 5.3
EPSS 0.00
CVE-2019-14953 MEDIUM
JetBrains YouTrack < 2019.2.53938 - Cross-Site Scripting via Issue Attachments in Firefox
Oct 01, 2019
CVSS 6.1
EPSS 0.00
CVE-2019-15039 CRITICAL
JetBrains TeamCity 2018.2.4 - Remote Code Execution
Oct 01, 2019
CVSS 9.8
EPSS 0.00
CVE-2019-14954 MEDIUM
IntelliJ IDEA < 2019.2 - Cleartext Transmission of Sensitive Information via PlantUML Artifact Download
Oct 01, 2019
CVSS 5.9
EPSS 0.00
CVE-2019-14952 MEDIUM
JetBrains YouTrack < 2019.1.52584 - Cross-Site Scripting in Issue Titles
Oct 01, 2019
CVSS 6.1
EPSS 0.00
CVE-2019-15848 MEDIUM
JetBrains TeamCity 2019.1-2019.1.1 - Cross-Site Scripting
Sep 05, 2019
CVSS 6.1
EPSS 0.00
CVE-2019-12852 CRITICAL
JetBrains YouTrack < 2018.4.49168 - Server-Side Request Forgery
Jul 03, 2019
CVSS 9.8
EPSS 0.00
CVE-2019-12846 MEDIUM
JetBrains TeamCity <2018.2.2 - Info Disclosure
Jul 03, 2019
CVSS 4.3
EPSS 0.00
CVE-2019-12845 MEDIUM
JetBrains TeamCity < 2018.2.3 - Improper Authentication via Unencrypted Kotlin DSL Connection
Jul 03, 2019
CVSS 5.3
EPSS 0.00
CVE-2019-12844 MEDIUM
JetBrains TeamCity < 2018.2.3 - Stored Cross-Site Scripting
Jul 03, 2019
CVSS 6.1
EPSS 0.00
CVE-2019-12843 MEDIUM
JetBrains TeamCity < 2018.2.3 - Stored JavaScript Injection
Jul 03, 2019
CVSS 6.1
EPSS 0.00
CVE-2019-12842 MEDIUM
JetBrains TeamCity < 2018.2.2 - Reflected Cross-Site Scripting
Jul 03, 2019
CVSS 6.1
EPSS 0.00
CVE-2019-12841 HIGH
JetBrains TeamCity < 2018.2.2 - Directory Traversal via ZIP Extraction
Jul 03, 2019
CVSS 7.5
EPSS 0.00
CVE-2019-10103 HIGH
Kotlin < 1.3.30 - Missing Encryption of Sensitive Data via Gradle Artifact Resolution
Jul 03, 2019
CVSS 8.1
EPSS 0.00