CVE-2025-59458: Command Injection
Published Sep 17, 2025
·Updated
In JetBrains Junie before 252.284.66, 251.284.66, 243.284.66, 252.284.61, 251.284.61, 243.284.61, 252.284.50, 252.284.54, 251.284.54, 251.284.50, 243.284.54, 243.284.50 code execution was possible due to improper command validation
Affected Software
4 affected components
JetBrains Junie<252.284.66
JetBrains Junie<243.284.50
JetBrains Junie>=251.72.165<251.284.50
JetBrains Junie>=252.204.139<252.284.50
Event History
Sep 17, 2025
CVE Published
via MITRE·09:04 AM
Data Sourced
via MITRE·09:04 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·09:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-59458?
CVE-2025-59458 is classified as a critical vulnerability due to the potential for code execution.
2
How do I fix CVE-2025-59458?
To mitigate CVE-2025-59458, upgrade JetBrains Junie to version 252.284.67 or later.
3
What versions of JetBrains Junie are affected by CVE-2025-59458?
CVE-2025-59458 affects JetBrains Junie versions up to and including 252.284.66.
4
What type of vulnerability is CVE-2025-59458?
CVE-2025-59458 is an improper command validation vulnerability that allows for code execution.
5
Can CVE-2025-59458 be exploited remotely?
Yes, CVE-2025-59458 can potentially be exploited remotely if the affected software is exposed.