CVE-2019-12867: Critical severity jetbrains youtrack vulnerability
Published Jul 3, 2019
·Updated
Certain actions could cause privilege escalation for issue attachments in JetBrains YouTrack. The issue was fixed in 2018.4.49168.
Affected Software
1 affected component
JetBrains YouTrack<2018.4.49168
Event History
Jul 3, 2019
CVE Published
via MITRE·06:24 PM
Data Sourced
via MITRE·06:24 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-12867?
CVE-2019-12867 is classified as a privilege escalation vulnerability in JetBrains YouTrack.
2
How do I fix CVE-2019-12867?
To resolve CVE-2019-12867, upgrade your JetBrains YouTrack installation to version 2018.4.49168 or later.
3
What versions of JetBrains YouTrack are affected by CVE-2019-12867?
JetBrains YouTrack versions prior to 2018.4.49168 are affected by CVE-2019-12867.
4
What type of vulnerability is CVE-2019-12867?
CVE-2019-12867 is a privilege escalation vulnerability that affects issue attachments.
5
Was CVE-2019-12867 addressed in a security update?
Yes, CVE-2019-12867 was fixed in the JetBrains YouTrack security update released in version 2018.4.49168.