CVE-2022-24327: High severity jetbrains hub vulnerability
Published Feb 25, 2022
·Updated
In JetBrains Hub before 2021.1.13890, integration with JetBrains Account exposed an API key with excessive permissions.
Affected Software
1 affected component
JetBrains Hub<2021.1.13890
Event History
Feb 25, 2022
CVE Published
via MITRE·02:34 PM
Data Sourced
via MITRE·02:34 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2022-24327.
2
What is the severity of CVE-2022-24327?
The severity of CVE-2022-24327 is high with a CVSS score of 7.5.
3
Which software versions are affected by CVE-2022-24327?
CVE-2022-24327 affects JetBrains Hub before version 2021.1.13890.
4
What is the vulnerability in JetBrains Hub?
In JetBrains Hub before 2021.1.13890, integration with JetBrains Account exposed an API key with excessive permissions.
5
How can I fix CVE-2022-24327 in my JetBrains Hub installation?
To fix CVE-2022-24327, you should update JetBrains Hub to version 2021.1.13890 or higher.