← Back

Jetbrains

jetbrains

564 CVEs • 38 products

Products (38)

Click to collapse
Toggle
Teamcity
teamcity
Youtrack
youtrack
Intellij Idea
intellij_idea
Hub
hub
Ktor
ktor
Toolbox
toolbox
Pycharm
pycharm
Rider
rider
Kotlin
kotlin
Upsource
upsource
Webstorm
webstorm
Resharper
resharper
Goland
goland
Phpstorm
phpstorm
Rubymine
rubymine
Space
space
Code With Me
code_with_me
Junie
junie
Mps
mps
Clion
clion
Dottrace
dottrace
Dotpeek
dotpeek
Vim
vim
Idetalk
idetalk
Scala
scala
Ideavim
ideavim
Aqua
aqua
Datagrip
datagrip
Dataspell
dataspell
Rustrover
rustrover
Runtime
runtime
Ide Services
ide_services
Datalore
datalore

CVEs (564)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Jetbrains
1Intellij Idea
Nov 21, 2024
Dec 8, 2022
N/A· v4
5.5 MEDIUM· v3
N/A· v2
In JetBrains IntelliJ IDEA before 2022.3 an XXE attack leading to SSRF via requests to custom plugin repositories was possible.
1Jetbrains
1Intellij Idea
Nov 21, 2024
Dec 8, 2022
N/A· v4
5.5 MEDIUM· v3
N/A· v2
In JetBrains IntelliJ IDEA before 2022.3 the built-in web server allowed an arbitrary file to be read by exploiting a path traversal vulnerability.
1Jetbrains
1Intellij Idea
Nov 21, 2024
Dec 8, 2022
N/A· v4
3.3 LOW· v3
N/A· v2
In JetBrains IntelliJ IDEA before 2022.3 the built-in web server leaked information about open projects.
1Jetbrains
1Intellij Idea
Nov 21, 2024
Dec 8, 2022
N/A· v4
7.8 HIGH· v3
N/A· v2
In JetBrains IntelliJ IDEA before 2022.2.4 a buffer overflow in the fsnotifier daemon on macOS was possible.
1Jetbrains
1Hub
Nov 21, 2024
Nov 18, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
In JetBrains Hub before 2022.3.15181 Throttling was missed when sending emails to a particular email address
1Jetbrains
1Teamcity
Nov 21, 2024
Nov 3, 2022
N/A· v4
5.3 MEDIUM· v3
N/A· v2
In JetBrains TeamCity version before 2022.10, no audit items were added upon editing a user's settings
1Jetbrains
1Teamcity
Nov 21, 2024
Nov 3, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
In JetBrains TeamCity version before 2022.10, Password parameters could be exposed in the build log if they contained special characters
1Jetbrains
1Teamcity
Nov 21, 2024
Nov 3, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
In JetBrains TeamCity version before 2022.10, Project Viewer could see scrambled secure values in the MetaRunner settings
1Jetbrains
1Teamcity
Nov 21, 2024
Nov 3, 2022
N/A· v4
5.3 MEDIUM· v3
N/A· v2
In JetBrains TeamCity version between 2021.2 and 2022.10 access permissions for secure token health items were excessive
1Jetbrains
1Teamcity
Nov 21, 2024
Sep 23, 2022
N/A· v4
5.3 MEDIUM· v3
N/A· v2
In JetBrains TeamCity before 2022.04.4 environmental variables of "password" type could be logged when using custom Perforce executable
1Jetbrains
1Intellij Idea
Nov 21, 2024
Sep 19, 2022
N/A· v4
7.8 HIGH· v3
N/A· v2
The installer of JetBrains IntelliJ IDEA before 2022.2.2 was vulnerable to EXE search order hijacking
1Jetbrains
1Ktor
Nov 21, 2024
Aug 12, 2022
N/A· v4
6.5 MEDIUM· v3
N/A· v2
In JetBrains Ktor before 2.1.0 the wrong authentication provider could be selected in some cases
1Jetbrains
1Ktor
Nov 21, 2024
Aug 12, 2022
N/A· v4
6.1 MEDIUM· v3
N/A· v2
JetBrains Ktor before 2.1.0 was vulnerable to the Reflect File Download attack
1Jetbrains
1Teamcity
Nov 21, 2024
Aug 10, 2022
N/A· v4
5.3 MEDIUM· v3
N/A· v2
In JetBrains TeamCity before 2022.04.3 the private SSH key could be written to the server log in some cases
1Jetbrains
1Rider
Nov 21, 2024
Aug 3, 2022
N/A· v4
7.8 HIGH· v3
N/A· v2
In JetBrains Rider before 2022.2 Trust and Open Project dialog could be bypassed, leading to local code execution
1Jetbrains
1Intellij Idea
Nov 21, 2024
Jul 28, 2022
N/A· v4
3.3 LOW· v3
N/A· v2
In JetBrains IntelliJ IDEA before 2022.2 email address validation in the "Git User Name Is Not Defined" dialog was missed
1Jetbrains
1Intellij Idea
Nov 21, 2024
Jul 28, 2022
N/A· v4
7.8 HIGH· v3
N/A· v2
In JetBrains IntelliJ IDEA before 2022.2 local code execution via a Vagrant executable was possible
1Jetbrains
1Teamcity
Nov 21, 2024
Jul 20, 2022
N/A· v4
8.8 HIGH· v3
N/A· v2
In JetBrains TeamCity before 2022.04.2 build parameter injection was possible
1Jetbrains
1Teamcity
Nov 21, 2024
Jul 20, 2022
N/A· v4
6.5 MEDIUM· v3
N/A· v2
In JetBrains TeamCity before 2022.04.2 the private SSH key could be written to the build log in some cases
1Jetbrains
1Hub
Nov 21, 2024
Jul 1, 2022
N/A· v4
5.3 MEDIUM· v3
5.0 MEDIUM· v2
In JetBrains Hub before 2022.2.14799, insufficient access control allowed the hijacking of untrusted services