Filtered by vendor Jetbrains
Subscriptions
Total
359 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2014-10002 | 1 Jetbrains | 1 Teamcity | 2022-10-03 | N/A |
Unspecified vulnerability in JetBrains TeamCity before 8.1 allows remote attackers to obtain sensitive information via unknown vectors. | ||||
CVE-2022-40979 | 1 Jetbrains | 1 Teamcity | 2022-09-26 | 5.3 Medium |
In JetBrains TeamCity before 2022.04.4 environmental variables of "password" type could be logged when using custom Perforce executable | ||||
CVE-2022-40978 | 1 Jetbrains | 1 Intellij Idea | 2022-09-21 | 7.8 High |
The installer of JetBrains IntelliJ IDEA before 2022.2.2 was vulnerable to EXE search order hijacking | ||||
CVE-2022-38180 | 1 Jetbrains | 1 Ktor | 2022-08-16 | 6.5 Medium |
In JetBrains Ktor before 2.1.0 the wrong authentication provider could be selected in some cases | ||||
CVE-2022-38179 | 1 Jetbrains | 1 Ktor | 2022-08-16 | 6.1 Medium |
JetBrains Ktor before 2.1.0 was vulnerable to the Reflect File Download attack | ||||
CVE-2022-38133 | 1 Jetbrains | 1 Teamcity | 2022-08-12 | 5.3 Medium |
In JetBrains TeamCity before 2022.04.3 the private SSH key could be written to the server log in some cases | ||||
CVE-2022-37396 | 1 Jetbrains | 1 Rider | 2022-08-10 | 7.8 High |
In JetBrains Rider before 2022.2 Trust and Open Project dialog could be bypassed, leading to local code execution | ||||
CVE-2022-37009 | 1 Jetbrains | 1 Intellij Idea | 2022-08-03 | 7.8 High |
In JetBrains IntelliJ IDEA before 2022.2 local code execution via a Vagrant executable was possible | ||||
CVE-2022-37010 | 1 Jetbrains | 1 Intellij Idea | 2022-08-03 | 3.3 Low |
In JetBrains IntelliJ IDEA before 2022.2 email address validation in the "Git User Name Is Not Defined" dialog was missed | ||||
CVE-2022-36321 | 1 Jetbrains | 1 Teamcity | 2022-07-27 | 6.5 Medium |
In JetBrains TeamCity before 2022.04.2 the private SSH key could be written to the build log in some cases | ||||
CVE-2022-36322 | 1 Jetbrains | 1 Teamcity | 2022-07-27 | 8.8 High |
In JetBrains TeamCity before 2022.04.2 build parameter injection was possible | ||||
CVE-2021-25775 | 1 Jetbrains | 1 Teamcity | 2022-07-12 | 3.8 Low |
In JetBrains TeamCity before 2020.2.1, the server admin could create and see access tokens for any other users. | ||||
CVE-2021-43196 | 1 Jetbrains | 1 Teamcity | 2022-07-12 | 7.5 High |
In JetBrains TeamCity before 2021.1, information disclosure via the Docker Registry connection dialog is possible. | ||||
CVE-2021-25755 | 1 Jetbrains | 1 Code With Me | 2022-07-12 | 2.5 Low |
In JetBrains Code With Me before 2020.3, an attacker on the local network, knowing a session ID, could get access to the encrypted traffic. | ||||
CVE-2021-25778 | 1 Jetbrains | 1 Teamcity | 2022-07-12 | 5.3 Medium |
In JetBrains TeamCity before 2020.2.1, permissions during user deletion were checked improperly. | ||||
CVE-2021-37546 | 1 Jetbrains | 1 Teamcity | 2022-07-12 | 5.3 Medium |
In JetBrains TeamCity before 2021.1, an insecure key generation mechanism for encrypted properties was used. | ||||
CVE-2021-37551 | 1 Jetbrains | 1 Youtrack | 2022-07-12 | 5.3 Medium |
In JetBrains YouTrack before 2021.2.16363, system user passwords were hashed with SHA-256. | ||||
CVE-2021-43183 | 1 Jetbrains | 1 Hub | 2022-07-12 | 9.8 Critical |
In JetBrains Hub before 2021.1.13690, the authentication throttling mechanism could be bypassed. | ||||
CVE-2021-25768 | 1 Jetbrains | 1 Youtrack | 2022-07-12 | 5.3 Medium |
In JetBrains YouTrack before 2020.4.4701, permissions for attachments actions were checked improperly. | ||||
CVE-2021-25759 | 1 Jetbrains | 1 Hub | 2022-07-12 | 6.5 Medium |
In JetBrains Hub before 2020.1.12629, an authenticated user can delete 2FA settings of any other user. |