First published: Fri Feb 25 2022(Updated: )
In JetBrains YouTrack before 2021.4.31698, a custom logo could be set by a user who has read-only permissions.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Jetbrains Youtrack | <2021.4.31698 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2022-24343.
The severity of CVE-2022-24343 is medium with a severity value of 4.3.
JetBrains YouTrack before version 2021.4.31698 is affected by CVE-2022-24343.
A custom logo could be set in JetBrains YouTrack before version 2021.4.31698 by a user who has read-only permissions.
Yes, fixing CVE-2022-24343 requires updating JetBrains YouTrack to version 2021.4.31698 or later.