Filters

JetBrains IntelliJ IDEAXSS

First published (updated )

CVE-2024-37051GitHub access token could be exposed to third-party sites in JetBrains IDEs after version 2023.1 and…

First published (updated )

JetBrains IntelliJ IDEAPath Traversal

EPSS
0.05%
First published (updated )

JetBrains IntelliJ IDEAInput Validation

EPSS
0.05%
First published (updated )

JetBrains IntelliJ IDEAIn JetBrains IntelliJ IDEA before 2023.3.2 code execution was possible in Untrusted Project mode via…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

JetBrains IntelliJ IDEAIn JetBrains IntelliJ IDEA before 2023.2 plugin for Space was requesting excessive permissions

7.8
First published (updated )

JetBrains IntelliJ IDEAIn JetBrains IntelliJ IDEA before 2023.1.4 license dialog could be suppressed in certain cases

3.3
First published (updated )

JetBrains IntelliJ IDEAIn JetBrains IntelliJ IDEA before 2023.1 the NTLM hash could leak through an API method used in the …

7.5
First published (updated )

JetBrains IntelliJ IDEAIn JetBrains IntelliJ IDEA before 2023.1 the bundled version of Chromium wasn't sandboxed.

8.8
First published (updated )

JetBrains IntelliJ IDEAIn JetBrains IntelliJ IDEA before 2023.1 in some cases, Gradle and Maven projects could be imported …

7.8
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

JetBrains IntelliJ IDEAInfoleak

7.5
First published (updated )

JetBrains IntelliJ IDEACode Injection

7.8
First published (updated )

JetBrains IntelliJ IDEAIn JetBrains IntelliJ IDEA before 2022.3.1 the "Validate JSP File" action used the HTTP protocol to …

7.5
First published (updated )

JetBrains IntelliJ IDEAMalicious File Upload

7.8
First published (updated )

JetBrains IntelliJ IDEAXEE, SSRF

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

JetBrains IntelliJ IDEAPath Traversal

First published (updated )

JetBrains IntelliJ IDEAWeak Encryption, Infoleak

First published (updated )

JetBrains IntelliJ IDEABuffer Overflow

7.8
First published (updated )

JetBrains IntelliJ IDEAThe installer of JetBrains IntelliJ IDEA before 2022.2.2 was vulnerable to EXE search order hijackin…

7.8
First published (updated )

JetBrains IntelliJ IDEAInput Validation

3.6
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

JetBrains IntelliJ IDEACode Injection

7.8
First published (updated )

JetBrains IntelliJ IDEACode Injection

7.7
First published (updated )

JetBrains IntelliJ IDEAIn JetBrains IntelliJ IDEA before 2022.1 origin checks in the internal web server were flawed

7.1
First published (updated )

JetBrains IntelliJ IDEAXSS

First published (updated )

JetBrains IntelliJ IDEAXSS

3.2
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

JetBrains IntelliJ IDEACode Injection

First published (updated )

JetBrains IntelliJ IDEACode Injection

7.7
First published (updated )

JetBrains IntelliJ IDEACode Injection

First published (updated )

JetBrains IntelliJ IDEAIn JetBrains IntelliJ IDEA before 2022.1 notification mechanisms about using Unicode directionality …

2.3
First published (updated )

JetBrains IntelliJ IDEAIn JetBrains IntelliJ IDEA before 2021.3.3 it was possible to get passwords from protected fields

8.4
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

JetBrains IntelliJ IDEAJetBrains IntelliJ IDEA 2021.3.1 Preview, IntelliJ IDEA 2021.3.1 RC, PyCharm Professional 2021.3.1 R…

First published (updated )

JetBrains IntelliJ IDEAIn JetBrains IntelliJ IDEA before 2021.3.1, local code execution via RLO (Right-to-Left Override) ch…

7.8
First published (updated )

JetBrains IntelliJ IDEAIn JetBrains IntelliJ IDEA before 2021.2.4, local code execution (without permission from a user) up…

7.8
First published (updated )

JetBrains IntelliJ IDEAIn JetBrains IntelliJ IDEA before 2021.1, DoS was possible because of unbounded resource allocation.

7.5
First published (updated )

JetBrains IntelliJ IDEAIn JetBrains IntelliJ IDEA 2020.3.3, local code execution was possible because of insufficient check…

7.8
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

JetBrains IntelliJ IDEAXEE

7.5
First published (updated )

JetBrains IntelliJ IDEAIn JetBrains IntelliJ IDEA before 2020.3, potentially insecure deserialization of the workspace mode…

7.8
First published (updated )

JetBrains IntelliJ IDEAIn JetBrains IntelliJ IDEA before 2020.2, HTTP links were used for several remote repositories inste…

First published (updated )

JetBrains IntelliJ IDEAIn JetBrains IntelliJ IDEA before 2020.2, the built-in web server could expose information about the…

First published (updated )

JetBrains IntelliJ IDEAIn JetBrains IntelliJ IDEA before 2020.1, the license server could be resolved to an untrusted host …

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

JetBrains IntelliJ IDEAIn JetBrains IntelliJ IDEA 2019.2, an XSLT debugger plugin misconfiguration allows arbitrary file re…

7.5
First published (updated )

JetBrains IntelliJ IDEAPorts listened to by JetBrains IntelliJ IDEA before 2019.3 were exposed to the network.

7.5
First published (updated )

JetBrains IntelliJ IDEAIn JetBrains IntelliJ IDEA before 2019.3, some Maven repositories were accessed via HTTP instead of …

7.4
First published (updated )

JetBrains IntelliJ IDEAJetBrains IntelliJ IDEA before 2019.2 allows local user privilege escalation, potentially leading to…

First published (updated )

JetBrains IntelliJ IDEAJetBrains IntelliJ IDEA before 2019.2 was resolving the markdown plantuml artifact download link via…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

JetBrains IntelliJ IDEAIn several JetBrains IntelliJ IDEA Ultimate versions, an Application Server run configuration (for T…

First published (updated )

JetBrains IntelliJ IDEAIn several versions of JetBrains IntelliJ IDEA Ultimate, creating Task Servers configurations leads …

First published (updated )

JetBrains IntelliJ IDEAIn several versions of JetBrains IntelliJ IDEA Ultimate, creating run configurations for cloud appli…

8.1
First published (updated )

JetBrains IntelliJ IDEAIn several JetBrains IntelliJ IDEA versions, a Spring Boot run configuration with the default settin…

First published (updated )

JetBrains IntelliJ IDEAIn several JetBrains IntelliJ IDEA versions, creating remote run configurations of JavaEE applicatio…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203