CVE-2026-86501: Low severity JetBrains IntelliJ IDEA vulnerability
Published Sep 7, 2026
·Updated
In JetBrains IntelliJ IDEA before 2026.2.2 terminal command input could be written to idea.log
Affected Software
1 affected component
JetBrains IntelliJ IDEA<2026.2.2
Event History
Sep 7, 2026
CVE Published
via MITRE·04:26 PM
Data Sourced
via MITRE·04:26 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What access and conditions does an attacker need?
The vector is local and requires low privileges and user interaction. The available data does not describe a remote exploitation path.
2
What is the potential impact?
Terminal command input could be written to idea.log, creating a confidentiality risk if sensitive commands or arguments are recorded. No integrity or availability impact is indicated.
3
Which installations should be remediated?
JetBrains IntelliJ IDEA versions before 2026.2.2 are affected according to the available information.