Filter
AND
-Infinity
0

JetBrains Toolbox AppIn JetBrains Toolbox App before 2.6 unencrypted credential transmission during SSH authentication wa…

7.5
EPSS
0.00%
First published (updated )

IntelliJ IDEABuffer Overflow

7.8
First published (updated )

JetBrains GatewayIn JetBrains JetBrains Gateway before 2022.3 a client could connect without a valid token if the hos…

8.8
First published (updated )

IntelliJ IDEAMalicious File Upload

7.8
First published (updated )

JetBrains Toolbox AppCommand Injection

8.3
EPSS
0.00%
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

JetBrains RubyMineIn JetBrains RubyMine before 2025.1 remote Interpreter overwrote ports to listen on all interfaces

8.3
EPSS
0.00%
First published (updated )

IntelliJ IDEAIn JetBrains IntelliJ IDEA before 2022.3.1 the "Validate JSP File" action used the HTTP protocol to …

7.5
First published (updated )

IntelliJ IDEACode Injection

7.8
First published (updated )

IntelliJ IDEAInfoleak

7.5
First published (updated )

IntelliJ IDEAIn JetBrains IntelliJ IDEA before 2023.1 in some cases, Gradle and Maven projects could be imported …

7.8
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

IntelliJ IDEAIn JetBrains IntelliJ IDEA before 2023.1 the bundled version of Chromium wasn't sandboxed.

8.8
First published (updated )

IntelliJ IDEAIn JetBrains IntelliJ IDEA before 2023.1 the NTLM hash could leak through an API method used in the …

7.5
First published (updated )

JetBrains TeamCityIn JetBrains TeamCity before 2024.12.2 improper Kubernetes connection settings could expose sensitiv…

7.7
EPSS
0.00%
First published (updated )

KtorPath Traversal

7.5
First published (updated )

WebStormIn JetBrains WebStorm before 2024.3 code execution in Untrusted Project mode was possible via type d…

7.8
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

JetBrains YouTrackIn JetBrains YouTrack before 2024.3.55417 account takeover was possible via spoofed email and Helpde…

7.8
EPSS
0.05%
First published (updated )

JetBrains HubIn JetBrains Hub before 2024.3.55417 privilege escalation was possible via LDAP authentication mappi…

8.8
EPSS
0.05%
First published (updated )

JetBrains Toolbox AppIn JetBrains Toolbox App before 1.28 a DYLIB injection on macOS was possible

7.8
First published (updated )

JetBrains YouTrackIn JetBrains YouTrack before 2024.1.29548 the SMTPS protocol communication lacked proper certificate…

7.5
EPSS
0.04%
First published (updated )

JetBrains ReSharper UltimateIn JetBrains ReSharper before 2024.3.4, 2024.2.8, and 2024.1.7, Rider before 2024.3.4, 2024.2.8, and…

7.8
EPSS
0.04%
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

JetBrains TeamCityIn JetBrains TeamCity before 2024.03.2 server was susceptible to DoS attacks with incorrect auth tok…

7.5
First published (updated )

JetBrains TeamCityIn JetBrains TeamCity before 2024.03.2 certain TeamCity API endpoints did not check user permissions

8.1
EPSS
0.04%
First published (updated )

JetBrains TeamCityIn JetBrains TeamCity before 2024.03.2 users could perform actions that should not be available to t…

8.1
First published (updated )

JetBrains TeamCityIn JetBrains TeamCity before 2023.05 a specific endpoint was vulnerable to brute force attacks

7.5
First published (updated )

JetBrains YouTrackIn JetBrains YouTrack before 2023.1.10518 a DoS attack was possible via Helpdesk forms

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

JetBrains TeamCityIn JetBrains TeamCity before 2024.12 access tokens were not revoked after removing user roles

8.8
First published (updated )

JetBrains TeamCityXEE

7.1
First published (updated )

JetBrains TeamCityXEE

8.1
EPSS
0.04%
First published (updated )

JetBrains TeamCityIn JetBrains TeamCity before 2024.03 2FA could be bypassed by providing a special URL parameter

7.4
EPSS
0.04%
First published (updated )

JetBrains TeamCityIn JetBrains TeamCity before 2022.04.7, 2022.10.6, 2023.05.6, 2023.11.5, 2024.03.2 a third-party age…

8.1
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203