CVE-2021-25758: High severity intellij idea vulnerability
Published Feb 3, 2021
·Updated
In JetBrains IntelliJ IDEA before 2020.3, potentially insecure deserialization of the workspace model could lead to local code execution.
Affected Software
1 affected component
JetBrains IntelliJ IDEA<2020.3
Event History
Feb 3, 2021
CVE Published
via MITRE·03:16 PM
Data Sourced
via MITRE·03:16 PM
Description
Frequently Asked Questions
1
What is CVE-2021-25758?
CVE-2021-25758 is a vulnerability in JetBrains IntelliJ IDEA before version 2020.3 that could allow local code execution.
2
How does CVE-2021-25758 affect JetBrains IntelliJ IDEA?
CVE-2021-25758 affects JetBrains IntelliJ IDEA versions before 2020.3.
3
What is the severity of CVE-2021-25758?
CVE-2021-25758 is considered a high severity vulnerability with a severity score of 7.8.
4
How can CVE-2021-25758 be exploited?
CVE-2021-25758 can be exploited through potentially insecure deserialization of the workspace model in JetBrains IntelliJ IDEA.
5
Is there a fix available for CVE-2021-25758?
Yes, the fix for CVE-2021-25758 is to upgrade JetBrains IntelliJ IDEA to version 2020.3 or later.