Vulnerabilities (CVE)

Filtered by vendor Jetbrains Subscribe
Total 582 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-52878 1 Jetbrains 1 Teamcity 2026-06-17 N/A 4.3 MEDIUM
In JetBrains TeamCity before 2025.03.3 usernames were exposed to the users without proper permissions
CVE-2025-52877 1 Jetbrains 1 Teamcity 2026-06-17 N/A 4.8 MEDIUM
In JetBrains TeamCity before 2025.03.3 reflected XSS on diskUsageBuildsStats page was possible
CVE-2025-52876 1 Jetbrains 1 Teamcity 2026-06-17 N/A 5.4 MEDIUM
In JetBrains TeamCity before 2025.03.3 reflected XSS on the favoriteIcon page was possible
CVE-2025-52875 1 Jetbrains 1 Teamcity 2026-06-17 N/A 5.4 MEDIUM
In JetBrains TeamCity before 2025.03.3 a DOM-based XSS at the Performance Monitor page was possible
CVE-2025-48391 1 Jetbrains 1 Youtrack 2026-06-17 N/A 7.7 HIGH
In JetBrains YouTrack before 2025.1.76253 deletion of issues was possible due to missing permission checks in API
CVE-2025-47854 1 Jetbrains 1 Teamcity 2026-06-17 N/A 4.3 MEDIUM
In JetBrains TeamCity before 2025.03.2 open redirect was possible on editing VCS Root page
CVE-2025-47853 1 Jetbrains 1 Teamcity 2026-06-17 N/A 4.8 MEDIUM
In JetBrains TeamCity before 2025.03.2 stored XSS via Jira integration was possible
CVE-2025-47852 1 Jetbrains 1 Teamcity 2026-06-17 N/A 4.8 MEDIUM
In JetBrains TeamCity before 2025.03.2 stored XSS via YouTrack integration was possible
CVE-2025-47851 1 Jetbrains 1 Teamcity 2026-06-17 N/A 4.8 MEDIUM
In JetBrains TeamCity before 2025.03.2 stored XSS via GitHub Checks Webhook was possible
CVE-2025-47850 1 Jetbrains 1 Youtrack 2026-06-17 N/A 4.3 MEDIUM
In JetBrains YouTrack before 2025.1.74704 restricted attachments could become visible after issue cloning
CVE-2025-46618 1 Jetbrains 1 Teamcity 2026-06-17 N/A 3.5 LOW
In JetBrains TeamCity before 2025.03.1 stored XSS was possible on Data Directory tab
CVE-2025-46433 1 Jetbrains 1 Teamcity 2026-06-17 N/A 4.9 MEDIUM
In JetBrains TeamCity before 2025.03.1 improper path validation in loggingPreset parameter was possible
CVE-2025-46432 1 Jetbrains 1 Teamcity 2026-06-17 N/A 4.3 MEDIUM
In JetBrains TeamCity before 2025.03.1 base64-encoded credentials could be exposed in build logs
CVE-2025-43016 1 Jetbrains 1 Rider 2026-06-17 N/A 5.4 MEDIUM
In JetBrains Rider before 2025.1.2 custom archive unpacker allowed arbitrary file overwrite during remote debug session
CVE-2025-43015 1 Jetbrains 1 Rubymine 2026-06-17 N/A 8.3 HIGH
In JetBrains RubyMine before 2025.1 remote Interpreter overwrote ports to listen on all interfaces
CVE-2025-43014 1 Jetbrains 1 Toolbox 2026-06-17 N/A 6.1 MEDIUM
In JetBrains Toolbox App before 2.6 the SSH plugin established connections without sufficient user confirmation
CVE-2025-43013 1 Jetbrains 1 Toolbox 2026-06-17 N/A 6.9 MEDIUM
In JetBrains Toolbox App before 2.6 unencrypted credential transmission during SSH authentication was possible
CVE-2025-43012 1 Jetbrains 1 Toolbox 2026-06-17 N/A 8.3 HIGH
In JetBrains Toolbox App before 2.6 command injection in SSH plugin was possible
CVE-2025-42921 1 Jetbrains 1 Toolbox 2026-06-17 N/A 4.2 MEDIUM
In JetBrains Toolbox App before 2.6 host key verification was missing in SSH plugin
CVE-2025-32054 1 Jetbrains 1 Intellij Idea 2026-06-17 N/A 3.3 LOW
In JetBrains IntelliJ IDEA before 2024.3, 2024.2.4 source code could be logged in the idea.log file