CVE-2019-14955: Medium severity jetbrains hub vulnerability
Published Oct 1, 2019
·Updated
In JetBrains Hub versions earlier than 2018.4.11436, there was no option to force a user to change the password and no password expiration policy was implemented.
Affected Software
1 affected component
JetBrains Hub<2018.4.11436
Event History
Oct 1, 2019
CVE Published
via MITRE·03:50 PM
Data Sourced
via MITRE·03:50 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2019-14955.
2
What is the severity level of CVE-2019-14955?
CVE-2019-14955 has a severity level of medium.
3
What is the affected software for this vulnerability?
The affected software for this vulnerability is JetBrains Hub versions earlier than 2018.4.11436.
4
What was the issue with JetBrains Hub versions earlier than 2018.4.11436?
In JetBrains Hub versions earlier than 2018.4.11436, there was no option to force a user to change the password and no password expiration policy was implemented.
5
Is there a fix for CVE-2019-14955?
Yes, updating to version 2018.4.11436 or later of JetBrains Hub fixes CVE-2019-14955.