← Back

Jetbrains

jetbrains

564 CVEs • 38 products

Products (38)

Click to collapse
Toggle
Teamcity
teamcity
Youtrack
youtrack
Intellij Idea
intellij_idea
Hub
hub
Ktor
ktor
Toolbox
toolbox
Pycharm
pycharm
Rider
rider
Kotlin
kotlin
Upsource
upsource
Webstorm
webstorm
Resharper
resharper
Goland
goland
Phpstorm
phpstorm
Rubymine
rubymine
Space
space
Code With Me
code_with_me
Junie
junie
Mps
mps
Clion
clion
Dottrace
dottrace
Dotpeek
dotpeek
Vim
vim
Idetalk
idetalk
Scala
scala
Ideavim
ideavim
Aqua
aqua
Datagrip
datagrip
Dataspell
dataspell
Rustrover
rustrover
Runtime
runtime
Ide Services
ide_services
Datalore
datalore

CVEs (564)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Jetbrains
1Teamcity
Nov 21, 2024
Nov 9, 2021
N/A· v4
5.3 MEDIUM· v3
5.0 MEDIUM· v2
In JetBrains TeamCity before 2021.1.2, some HTTP security headers were missing.
1Jetbrains
1Teamcity
Nov 21, 2024
Nov 9, 2021
N/A· v4
5.3 MEDIUM· v3
5.0 MEDIUM· v2
In JetBrains TeamCity before 2021.1.2, user enumeration was possible.
1Jetbrains
1Teamcity
Nov 21, 2024
Nov 9, 2021
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
In JetBrains TeamCity before 2021.1.2, remote code execution via the agent push functionality is possible.
1Jetbrains
1Youtrack Mobile
Nov 21, 2024
Nov 9, 2021
N/A· v4
5.3 MEDIUM· v3
5.0 MEDIUM· v2
In JetBrains YouTrack Mobile before 2021.2, iOS URL scheme hijacking is possible.
1Jetbrains
1Youtrack Mobile
Nov 21, 2024
Nov 9, 2021
N/A· v4
5.3 MEDIUM· v3
5.0 MEDIUM· v2
JetBrains YouTrack Mobile before 2021.2, is missing the security screen on Android and iOS.
1Jetbrains
1Youtrack Mobile
Nov 21, 2024
Nov 9, 2021
N/A· v4
5.3 MEDIUM· v3
5.0 MEDIUM· v2
In JetBrains YouTrack Mobile before 2021.2, task hijacking on Android is possible.
1Jetbrains
1Youtrack Mobile
Nov 21, 2024
Nov 9, 2021
N/A· v4
7.3 HIGH· v3
7.5 HIGH· v2
In JetBrains YouTrack Mobile before 2021.2, access token protection on Android is incomplete.
1Jetbrains
1Youtrack Mobile
Nov 21, 2024
Nov 9, 2021
N/A· v4
7.3 HIGH· v3
7.5 HIGH· v2
In JetBrains YouTrack Mobile before 2021.2, access token protection on iOS is incomplete.
1Jetbrains
1Youtrack Mobile
Nov 21, 2024
Nov 9, 2021
N/A· v4
5.3 MEDIUM· v3
5.0 MEDIUM· v2
In JetBrains YouTrack Mobile before 2021.2, the client-side cache on iOS could contain sensitive information.
1Jetbrains
1Youtrack
Nov 21, 2024
Nov 9, 2021
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
JetBrains YouTrack before 2021.3.24402 is vulnerable to stored XSS.
1Jetbrains
1Youtrack
Nov 21, 2024
Nov 9, 2021
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
JetBrains YouTrack before 2021.3.23639 is vulnerable to Host header injection.
1Jetbrains
1Youtrack
Nov 21, 2024
Nov 9, 2021
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
In JetBrains YouTrack before 2021.3.21051, stored XSS is possible.
1Jetbrains
1Hub
Nov 21, 2024
Nov 9, 2021
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
In JetBrains Hub before 2021.1.13690, the authentication throttling mechanism could be bypassed.
1Jetbrains
1Youtrack
Nov 21, 2024
Aug 6, 2021
N/A· v4
4.3 MEDIUM· v3
4.0 MEDIUM· v2
In JetBrains YouTrack before 2021.3.21051, a user could see boards without having corresponding permissions.
1Jetbrains
1Youtrack
Nov 21, 2024
Aug 6, 2021
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
In JetBrains YouTrack before 2021.2.16363, an insecure PRNG was used.
1Jetbrains
1Youtrack
Nov 21, 2024
Aug 6, 2021
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
In JetBrains YouTrack before 2021.2.17925, stored XSS was possible.
1Jetbrains
1Youtrack
Nov 21, 2024
Aug 6, 2021
N/A· v4
5.3 MEDIUM· v3
5.0 MEDIUM· v2
In JetBrains YouTrack before 2021.2.16363, system user passwords were hashed with SHA-256.
1Jetbrains
1Youtrack
Nov 21, 2024
Aug 6, 2021
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
In JetBrains YouTrack before 2021.2.16363, time-unsafe comparisons were used.
1Jetbrains
1Youtrack
Nov 21, 2024
Aug 6, 2021
N/A· v4
9.1 CRITICAL· v3
6.4 MEDIUM· v2
In JetBrains YouTrack before 2021.1.11111, sandboxing in workflows was insufficient.
1Jetbrains
1Teamcity
Nov 21, 2024
Aug 6, 2021
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
In JetBrains TeamCity before 2021.1, passwords in cleartext sometimes could be stored in VCS.