CVE-2023-51655: Critical severity intellij idea vulnerability
Published Dec 21, 2023
·Updated
In JetBrains IntelliJ IDEA before 2023.3.2 code execution was possible in Untrusted Project mode via a malicious plugin repository specified in the project configuration
Affected Software
1 affected component
JetBrains IntelliJ IDEA<2023.3.2
Event History
Dec 21, 2023
CVE Published
09:57 AM
Data Sourced
09:57 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-51655?
CVE-2023-51655 is classified as a high-severity vulnerability due to the potential for arbitrary code execution.
2
How do I fix CVE-2023-51655?
To fix CVE-2023-51655, update JetBrains IntelliJ IDEA to version 2023.3.2 or later.
3
What versions of JetBrains IntelliJ IDEA are affected by CVE-2023-51655?
CVE-2023-51655 affects JetBrains IntelliJ IDEA versions prior to 2023.3.2.
4
What is the risk associated with CVE-2023-51655?
The risk associated with CVE-2023-51655 is that a malicious plugin repository could lead to code execution in Untrusted Project mode.
5
Are there any workarounds for CVE-2023-51655?
There are no recommended workarounds for CVE-2023-51655, so it is best to perform the upgrade.