CVE-2026-61492: XSS
Published Jul 10, 2026
·Updated
In JetBrains YouTrack before 2026.2.17394 stored XSS via article titles in digest emails was possible
Affected Software
2 affected components
JetBrains YouTrack<2026.2.17394
JetBrains YouTrack<2026.2.17394
Event History
Jul 10, 2026
CVE Published
via MITRE·02:19 PM
Data Sourced
via MITRE·02:19 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2026-61492?
CVE-2026-61492 has a severity rating of low with a score of 3.5.
2
What does CVE-2026-61492 exploit?
CVE-2026-61492 exploits stored XSS vulnerabilities via article titles in digest emails in JetBrains YouTrack.
3
How can I mitigate CVE-2026-61492?
Mitigation for CVE-2026-61492 includes updating JetBrains YouTrack to version 2026.2.17394 or later.
4
Is CVE-2026-61492 critical for my system?
CVE-2026-61492 is considered low risk and may not be critical depending on your system's exposure.
5
When was CVE-2026-61492 published?
CVE-2026-61492 was published on July 10, 2026.