← Back

Jetbrains

jetbrains

564 CVEs • 38 products

Products (38)

Click to collapse
Toggle
Teamcity
teamcity
Youtrack
youtrack
Intellij Idea
intellij_idea
Hub
hub
Ktor
ktor
Toolbox
toolbox
Pycharm
pycharm
Rider
rider
Kotlin
kotlin
Upsource
upsource
Webstorm
webstorm
Resharper
resharper
Goland
goland
Phpstorm
phpstorm
Rubymine
rubymine
Space
space
Code With Me
code_with_me
Junie
junie
Mps
mps
Clion
clion
Dottrace
dottrace
Dotpeek
dotpeek
Vim
vim
Idetalk
idetalk
Scala
scala
Ideavim
ideavim
Aqua
aqua
Datagrip
datagrip
Dataspell
dataspell
Rustrover
rustrover
Runtime
runtime
Ide Services
ide_services
Datalore
datalore

CVEs (564)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Jetbrains
1Teamcity
Nov 21, 2024
May 11, 2021
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
In JetBrains TeamCity before 2020.2.3, stored XSS was possible on several pages.
1Jetbrains
1Teamcity
Nov 21, 2024
May 11, 2021
N/A· v4
5.3 MEDIUM· v3
5.0 MEDIUM· v2
In JetBrains TeamCity before 2020.2.2, permission checks for changing TeamCity plugins were implemented improperly.
1Jetbrains
1Teamcity
Nov 21, 2024
May 11, 2021
N/A· v4
2.7 LOW· v3
4.0 MEDIUM· v2
In JetBrains TeamCity before 2020.2.2, audit logs were not sufficient when an administrator uploaded a file.
1Jetbrains
1Youtrack
Nov 21, 2024
May 11, 2021
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
In JetBrains YouTrack before 2020.6.8801, information disclosure in an issue preview was possible.
1Jetbrains
1Teamcity
Nov 21, 2024
May 11, 2021
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
In JetBrains TeamCity before 2020.2.2, XSS was potentially possible on the test history page.
1Jetbrains
1Youtrack
Nov 21, 2024
May 11, 2021
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
In JetBrains YouTrack before 2021.1.9819, a pull request's title was sanitized insufficiently, leading to XSS.
1Jetbrains
1Youtrack
Nov 21, 2024
May 11, 2021
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
In JetBrains YouTrack before 2020.6.6600, access control during the exporting of issues was implemented improperly.
1Jetbrains
1Hub
Nov 21, 2024
May 11, 2021
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
In JetBrains Hub before 2021.1.13079, two-factor authentication wasn't enabled properly for the All Users group.
1Jetbrains
1Code With Me
Nov 21, 2024
May 11, 2021
N/A· v4
5.3 MEDIUM· v3
5.0 MEDIUM· v2
In JetBrains Code With Me bundled to the compatible IDE versions before 2021.1, a client could open a browser on a host.
1Jetbrains
1Code With Me
Nov 21, 2024
May 11, 2021
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
In JetBrains Code With Me bundled to the compatible IDEs before version 2021.1, the client could execute code in read-only mode.
1Jetbrains
1Intellij Idea
Nov 21, 2024
May 11, 2021
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
In JetBrains IntelliJ IDEA before 2021.1, DoS was possible because of unbounded resource allocation.
1Jetbrains
1Intellij Idea
Nov 21, 2024
May 11, 2021
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
In IntelliJ IDEA before 2020.3.3, XXE was possible, leading to information disclosure.
1Jetbrains
1Pycharm
Nov 21, 2024
May 11, 2021
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
In JetBrains PyCharm before 2020.3.4, local code execution was possible because of insufficient checks when getting the project from VCS.
1Jetbrains
1Intellij Idea
Nov 21, 2024
May 11, 2021
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
In JetBrains IntelliJ IDEA 2020.3.3, local code execution was possible because of insufficient checks when getting the project from VCS.
1Jetbrains
1Youtrack
Nov 21, 2024
May 11, 2021
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
In JetBrains YouTrack before 2020.6.6441, stored XSS was possible via an issue attachment.
1Jetbrains
1Teamcity
Nov 21, 2024
May 11, 2021
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
In the TeamCity IntelliJ plugin before 2020.2.2.85899, DoS was possible.
1Jetbrains
1Teamcity
Nov 21, 2024
May 11, 2021
N/A· v4
3.3 LOW· v3
2.1 LOW· v2
Information disclosure in the TeamCity plugin for IntelliJ before 2020.2.2.85899 was possible because a local temporary file had Insecure Permissions.
1Jetbrains
1Phpstorm
Nov 21, 2024
Mar 18, 2021
N/A· v4
5.3 MEDIUM· v3
5.0 MEDIUM· v2
In JetBrains PhpStorm before 2020.3, source code could be added to debug logs.
1Jetbrains
1Teamcity
Nov 21, 2024
Feb 3, 2021
N/A· v4
5.3 MEDIUM· v3
5.0 MEDIUM· v2
In JetBrains TeamCity before 2020.2.1, permissions during user deletion were checked improperly.
1Jetbrains
1Teamcity
Nov 21, 2024
Feb 3, 2021
N/A· v4
5.3 MEDIUM· v3
5.0 MEDIUM· v2
In JetBrains TeamCity before 2020.2.1, permissions during token removal were checked improperly.