First published: Wed Feb 03 2021(Updated: )
In JetBrains YouTrack before 2020.4.4701, CSRF via attachment upload was possible.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Jetbrains Youtrack | <2020.4.4701 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2021-25765.
The title of the vulnerability is 'In JetBrains YouTrack before 2020.4.4701 CSRF via attachment upload was possible.'
The severity of CVE-2021-25765 is high with a CVSS score of 8.8.
CVE-2021-25765 affects JetBrains YouTrack versions before 2020.4.4701.
To fix the vulnerability CVE-2021-25765, update JetBrains YouTrack to version 2020.4.4701 or later.