CVE-2025-43013: High severity jetbrains toolbox app vulnerability
Published Apr 17, 2025
·Updated
In JetBrains Toolbox App before 2.6 unencrypted credential transmission during SSH authentication was possible
Affected Software
2 affected components
JetBrains Toolbox App<2.6
JetBrains Toolbox<2.6
Event History
Apr 17, 2025
CVE Published
via MITRE·03:56 PM
Data Sourced
via MITRE·03:56 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-43013?
CVE-2025-43013 has been classified as a medium severity vulnerability due to unencrypted credential transmission.
2
How do I fix CVE-2025-43013?
To fix CVE-2025-43013, update JetBrains Toolbox App to version 2.6 or later.
3
What types of data are affected by CVE-2025-43013?
CVE-2025-43013 affects unencrypted transmission of user credentials during SSH authentication.
4
Is CVE-2025-43013 present in all versions of JetBrains Toolbox App?
No, CVE-2025-43013 is only present in versions of JetBrains Toolbox App prior to 2.6.
5
Can CVE-2025-43013 lead to unauthorized access?
Yes, the unencrypted transmission can potentially allow attackers to capture credentials and gain unauthorized access.