CVE-2021-25759: Medium severity jetbrains hub vulnerability
Published Feb 3, 2021
·Updated
In JetBrains Hub before 2020.1.12629, an authenticated user can delete 2FA settings of any other user.
Affected Software
1 affected component
JetBrains Hub<2020.1.12629
Event History
Feb 3, 2021
CVE Published
via MITRE·03:17 PM
Data Sourced
via MITRE·03:17 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2021-25759.
2
What is the severity of CVE-2021-25759?
The severity of CVE-2021-25759 is medium with a CVSS score of 6.5.
3
What is the affected software of CVE-2021-25759?
The affected software of CVE-2021-25759 is JetBrains Hub before version 2020.1.12629.
4
What can an authenticated user do with CVE-2021-25759?
An authenticated user can delete 2FA settings of any other user with CVE-2021-25759.
5
How can I fix CVE-2021-25759?
To fix CVE-2021-25759, update your JetBrains Hub to version 2020.1.12629 or above.