CVE-2019-10101

HIGH

JetBrains Kotlin <1.3.30 - Info Disclosure

Title source: llm
STIX 2.1

Description

JetBrains Kotlin versions before 1.3.30 were resolving artifacts using an http connection during the build process, potentially allowing an MITM attack.

Scores

CVSS v3 8.1
EPSS 0.0001
EPSS Percentile 1.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-319
Status published
Products (1)
jetbrains/kotlin < 1.3.30
Published Jul 03, 2019
Tracked Since Feb 18, 2026