First published: Thu Apr 17 2025(Updated: )
In JetBrains Toolbox App before 2.6 the SSH plugin established connections without sufficient user confirmation
Credit: cve@jetbrains.com
Affected Software | Affected Version | How to fix |
---|---|---|
JetBrains Toolbox App | <2.6 | |
JetBrains Toolbox App | <2.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-43014 has been classified as a moderate severity vulnerability due to the lack of user confirmation when establishing SSH connections.
To mitigate CVE-2025-43014, upgrade to JetBrains Toolbox App version 2.6 or later, which addresses this vulnerability.
CVE-2025-43014 affects the JetBrains Toolbox App versions prior to 2.6, specifically the SSH plugin.
CVE-2025-43014 is an authentication vulnerability that allows SSH connections without sufficient user confirmation.
Users of JetBrains Toolbox App versions before 2.6 are impacted by CVE-2025-43014.