CVE-2022-29814: Code Injection
Published Apr 28, 2022
·Updated
In JetBrains IntelliJ IDEA before 2022.1 local code execution via HTML descriptions in custom JSON schemas was possible
Affected Software
1 affected component
JetBrains IntelliJ IDEA<2022.1
Event History
Apr 28, 2022
CVE Published
via MITRE·09:55 AM
Data Sourced
via MITRE·09:55 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2022-29814?
CVE-2022-29814 is a vulnerability in JetBrains IntelliJ IDEA before 2022.1 that allows for local code execution via HTML descriptions in custom JSON schemas.
2
What software is affected by CVE-2022-29814?
JetBrains IntelliJ IDEA before version 2022.1 is affected by CVE-2022-29814.
3
What is the severity of CVE-2022-29814?
CVE-2022-29814 has a severity rating of 7.7, which is considered high.
4
How can I fix CVE-2022-29814?
To fix CVE-2022-29814, it is recommended to update JetBrains IntelliJ IDEA to version 2022.1 or later.
5
Where can I find more information about CVE-2022-29814?
You can find more information about CVE-2022-29814 at the following link: https://www.jetbrains.com/privacy-security/issues-fixed/