First published: Fri Feb 25 2022(Updated: )
In JetBrains IntelliJ IDEA before 2021.2.4, local code execution (without permission from a user) upon opening a project was possible.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
JetBrains IntelliJ IDEA | <2021.2.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2022-24345.
The title of this vulnerability is 'In JetBrains IntelliJ IDEA before 2021.2.4 local code execution (without permission from a user) upon opening a project was possible.'
In JetBrains IntelliJ IDEA before 2021.2.4, local code execution (without permission from a user) upon opening a project was possible.
The affected software is JetBrains IntelliJ IDEA up to version 2021.2.4.
The severity of this vulnerability is high with a CVSS score of 7.8.
You can find more information about this vulnerability at the following reference links: [https://blog.jetbrains.com](https://blog.jetbrains.com) and [https://blog.jetbrains.com/blog/2022/02/08/jetbrains-security-bulletin-q4-2021/](https://blog.jetbrains.com/blog/2022/02/08/jetbrains-security-bulletin-q4-2021/).