First published: Thu Aug 27 2020(Updated: )
In JetBrains YouTrack versions before 2020.3.4313, 2020.2.11008, 2020.1.11011, 2019.1.65514, 2019.2.65515, and 2019.3.65516, an attacker can retrieve an issue description without appropriate access.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Jetbrains Youtrack | <2019.1.65514 | |
Jetbrains Youtrack | >=2019.2.0<2019.2.65515 | |
Jetbrains Youtrack | >=2019.3<2019.3.65516 | |
Jetbrains Youtrack | >=2020.1<2020.1.11011 | |
Jetbrains Youtrack | >=2020.2<2020.2.11008 | |
Jetbrains Youtrack | >=2020.3<2020.3.4313 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2020-24618.
The severity of CVE-2020-24618 is medium with a CVSS score of 6.5.
JetBrains YouTrack versions before 2020.3.4313, 2020.2.11008, 2020.1.11011, 2019.1.65514, 2019.2.65515, and 2019.3.65516 are affected.
An attacker can retrieve an issue description without appropriate access.
Yes, you can find more information on this vulnerability on JetBrains' security bulletin and the specific issue page in YouTrack.