CVE-2022-25260: SSRF
Published Feb 25, 2022
·Updated
JetBrains Hub before 2021.1.14276 was vulnerable to blind Server-Side Request Forgery (SSRF).
Affected Software
1 affected component
JetBrains Hub<2021.1.14276
Event History
Feb 25, 2022
CVE Published
via MITRE·08:01 PM
Data Sourced
via MITRE·08:01 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID is CVE-2022-25260.
2
What is the severity of CVE-2022-25260?
The severity of CVE-2022-25260 is critical with a CVSS score of 9.1.
3
What is the description of CVE-2022-25260?
CVE-2022-25260 refers to a vulnerability in JetBrains Hub before 2021.1.14276 that allows blind Server-Side Request Forgery (SSRF).
4
Which version of JetBrains Hub is affected by CVE-2022-25260?
JetBrains Hub versions up to and excluding 2021.1.14276 are affected by CVE-2022-25260.
5
How can I fix CVE-2022-25260?
To fix CVE-2022-25260, update JetBrains Hub to version 2021.1.14276 or later.