CVE-2026-75046: Medium severity JetBrains YouTrack vulnerability
Published Aug 17, 2026
·Updated
In JetBrains YouTrack before 2026.2.18112 an authenticated user could enumerate accounts via the users search endpoint
Affected Software
1 affected component
JetBrains YouTrack<2026.2.18112
Event History
Aug 17, 2026
CVE Published
via NVD·04:17 PM
Data Sourced
via NVD·04:17 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-75046?
The severity of CVE-2026-75046 is rated medium with a CVSS score of 4.3.
2
What type of vulnerability is CVE-2026-75046?
CVE-2026-75046 is an account enumeration vulnerability affecting authenticated users in JetBrains YouTrack.
3
How can an attacker exploit CVE-2026-75046?
An attacker can exploit CVE-2026-75046 by using the users search endpoint to enumerate user accounts.
4
How do I fix CVE-2026-75046?
To fix CVE-2026-75046, update JetBrains YouTrack to version 2026.2.18112 or later.
5
Which software is affected by CVE-2026-75046?
CVE-2026-75046 affects JetBrains YouTrack versions prior to 2026.2.18112.