CVE-2026-56142: Critical severity JetBrains JetBrains Hub vulnerability
In JetBrains Hub before 2026.1.13757, 2025.3.148033, 2025.2.148048, 2025.1.148120, 2024.3.148430, 2024.2.148429 privilege escalation by attaching authentication details to accounts was possible
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
JetBrains Hubto a version that resolves this vulnerability.Fixed in 2026.1.13757 - Upgrade
Upgrade
JetBrains Hubto a version that resolves this vulnerability.Fixed in 2025.3.148033 - Upgrade
Upgrade
JetBrains Hubto a version that resolves this vulnerability.Fixed in 2025.2.148048 - Upgrade
Upgrade
JetBrains Hubto a version that resolves this vulnerability.Fixed in 2025.1.148120 - Upgrade
Upgrade
JetBrains Hubto a version that resolves this vulnerability.Fixed in 2024.3.148430 - Upgrade
Upgrade
JetBrains Hubto a version that resolves this vulnerability.Fixed in 2024.2.148429
Event History
Frequently Asked Questions
What is the severity of CVE-2026-56142?
The severity of CVE-2026-56142 is critical, with a score of 9.9.
What is CVE-2026-56142 about?
CVE-2026-56142 involves a privilege escalation vulnerability in JetBrains Hub that allows attaching authentication details to accounts.
How do I fix CVE-2026-56142?
To fix CVE-2026-56142, upgrade JetBrains Hub to versions 2026.1.13757, 2025.3.148033, 2025.2.148048, 2025.1.148120, 2024.3.148430, or 2024.2.148429.
What impact does CVE-2026-56142 have?
CVE-2026-56142 can lead to unauthorized privilege escalation, allowing attackers to gain higher access rights.
Which versions of JetBrains Hub are affected by CVE-2026-56142?
CVE-2026-56142 affects JetBrains Hub versions prior to 2026.1.13757, 2025.3.148033, 2025.2.148048, 2025.1.148120, 2024.3.148430, and 2024.2.148429.