CVE-2022-37009: Code Injection
Published Jul 28, 2022
·Updated
In JetBrains IntelliJ IDEA before 2022.2 local code execution via a Vagrant executable was possible
Affected Software
1 affected component
JetBrains IntelliJ IDEA<2022.2
Event History
Jul 28, 2022
CVE Published
via MITRE·10:25 AM
Data Sourced
via MITRE·10:25 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2022-37009?
CVE-2022-37009 is a vulnerability in JetBrains IntelliJ IDEA that allows for local code execution via a Vagrant executable.
2
How does CVE-2022-37009 affect JetBrains IntelliJ IDEA?
CVE-2022-37009 affects JetBrains IntelliJ IDEA versions before 2022.2 and allows for local code execution via a Vagrant executable.
3
What is the severity of CVE-2022-37009?
CVE-2022-37009 has a severity score of 7.8, which is classified as high.
4
How can I fix CVE-2022-37009?
To fix CVE-2022-37009, you should update JetBrains IntelliJ IDEA to version 2022.2 or later.
5
Where can I find more information about CVE-2022-37009?
You can find more information about CVE-2022-37009 on the JetBrains website at: https://www.jetbrains.com/privacy-security/issues-fixed/