CVE-2025-58335: High severity JetBrains Junie vulnerability
Published Aug 28, 2025
·Updated
In JetBrains Junie before 252.284.66, 251.284.66, 243.284.66, 252.284.61, 251.284.61, 243.284.61, 252.284.50, 252.284.54, 251.284.54, 251.284.50, 243.284.54, 243.284.50 information disclosure was possible via searchproject function
Affected Software
4 affected components
JetBrains Junie<252.284.66
JetBrains Junie<243.284.50
JetBrains Junie>=251.72.165<251.284.50
JetBrains Junie>=252.204.139<252.284.50
Event History
Aug 28, 2025
CVE Published
via MITRE·04:48 PM
Data Sourced
via MITRE·04:48 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-58335?
CVE-2025-58335 has been classified as a moderate severity vulnerability due to its potential for information disclosure.
2
How do I fix CVE-2025-58335?
To mitigate CVE-2025-58335, upgrade JetBrains Junie to version 252.284.67 or later.
3
What types of information could be disclosed through CVE-2025-58335?
CVE-2025-58335 may allow unauthorized access to sensitive project-related information via the search_project function.
4
Which versions of JetBrains Junie are affected by CVE-2025-58335?
CVE-2025-58335 affects JetBrains Junie versions prior to 252.284.66.
5
Is there a workaround for CVE-2025-58335 while waiting for a patch?
Currently, there are no official workarounds for CVE-2025-58335; updating to the latest version is recommended.