First published: Sat Aug 08 2020(Updated: )
In JetBrains Upsource before 2020.1, information disclosure is possible because of an incorrect user matching algorithm.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
JetBrains UpSource | <2020.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-19704 is a vulnerability in JetBrains Upsource before 2020.1 that allows information disclosure due to an incorrect user matching algorithm.
The severity of CVE-2019-19704 is high, with a CVSS score of 7.5.
CVE-2019-19704 affects JetBrains Upsource versions before 2020.1, allowing information disclosure.
To fix the CVE-2019-19704 vulnerability, update JetBrains Upsource to version 2020.1 or later.
You can find more information about CVE-2019-19704 in the JetBrains Security Bulletin for Q2 2020: [link](https://blog.jetbrains.com/blog/2020/08/06/jetbrains-security-bulletin-q2-2020/)