Filtered by vendor Jetbrains Subscriptions
Total 359 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2014-10002 1 Jetbrains 1 Teamcity 2022-10-03 N/A
Unspecified vulnerability in JetBrains TeamCity before 8.1 allows remote attackers to obtain sensitive information via unknown vectors.
CVE-2022-40979 1 Jetbrains 1 Teamcity 2022-09-26 5.3 Medium
In JetBrains TeamCity before 2022.04.4 environmental variables of "password" type could be logged when using custom Perforce executable
CVE-2022-40978 1 Jetbrains 1 Intellij Idea 2022-09-21 7.8 High
The installer of JetBrains IntelliJ IDEA before 2022.2.2 was vulnerable to EXE search order hijacking
CVE-2022-38180 1 Jetbrains 1 Ktor 2022-08-16 6.5 Medium
In JetBrains Ktor before 2.1.0 the wrong authentication provider could be selected in some cases
CVE-2022-38179 1 Jetbrains 1 Ktor 2022-08-16 6.1 Medium
JetBrains Ktor before 2.1.0 was vulnerable to the Reflect File Download attack
CVE-2022-38133 1 Jetbrains 1 Teamcity 2022-08-12 5.3 Medium
In JetBrains TeamCity before 2022.04.3 the private SSH key could be written to the server log in some cases
CVE-2022-37396 1 Jetbrains 1 Rider 2022-08-10 7.8 High
In JetBrains Rider before 2022.2 Trust and Open Project dialog could be bypassed, leading to local code execution
CVE-2022-37009 1 Jetbrains 1 Intellij Idea 2022-08-03 7.8 High
In JetBrains IntelliJ IDEA before 2022.2 local code execution via a Vagrant executable was possible
CVE-2022-37010 1 Jetbrains 1 Intellij Idea 2022-08-03 3.3 Low
In JetBrains IntelliJ IDEA before 2022.2 email address validation in the "Git User Name Is Not Defined" dialog was missed
CVE-2022-36321 1 Jetbrains 1 Teamcity 2022-07-27 6.5 Medium
In JetBrains TeamCity before 2022.04.2 the private SSH key could be written to the build log in some cases
CVE-2022-36322 1 Jetbrains 1 Teamcity 2022-07-27 8.8 High
In JetBrains TeamCity before 2022.04.2 build parameter injection was possible
CVE-2021-25775 1 Jetbrains 1 Teamcity 2022-07-12 3.8 Low
In JetBrains TeamCity before 2020.2.1, the server admin could create and see access tokens for any other users.
CVE-2021-43196 1 Jetbrains 1 Teamcity 2022-07-12 7.5 High
In JetBrains TeamCity before 2021.1, information disclosure via the Docker Registry connection dialog is possible.
CVE-2021-25755 1 Jetbrains 1 Code With Me 2022-07-12 2.5 Low
In JetBrains Code With Me before 2020.3, an attacker on the local network, knowing a session ID, could get access to the encrypted traffic.
CVE-2021-25778 1 Jetbrains 1 Teamcity 2022-07-12 5.3 Medium
In JetBrains TeamCity before 2020.2.1, permissions during user deletion were checked improperly.
CVE-2021-37546 1 Jetbrains 1 Teamcity 2022-07-12 5.3 Medium
In JetBrains TeamCity before 2021.1, an insecure key generation mechanism for encrypted properties was used.
CVE-2021-37551 1 Jetbrains 1 Youtrack 2022-07-12 5.3 Medium
In JetBrains YouTrack before 2021.2.16363, system user passwords were hashed with SHA-256.
CVE-2021-43183 1 Jetbrains 1 Hub 2022-07-12 9.8 Critical
In JetBrains Hub before 2021.1.13690, the authentication throttling mechanism could be bypassed.
CVE-2021-25768 1 Jetbrains 1 Youtrack 2022-07-12 5.3 Medium
In JetBrains YouTrack before 2020.4.4701, permissions for attachments actions were checked improperly.
CVE-2021-25759 1 Jetbrains 1 Hub 2022-07-12 6.5 Medium
In JetBrains Hub before 2020.1.12629, an authenticated user can delete 2FA settings of any other user.