Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
jetbrains vulnerabilities and exploits
(subscribe to this query)
6.1
CVSSv3
CVE-2022-25261
JetBrains TeamCity prior to 2021.2.2 was vulnerable to reflected XSS.
Jetbrains Teamcity
9.8
CVSSv3
CVE-2022-25263
JetBrains TeamCity prior to 2021.2.3 was vulnerable to OS command injection in the Agent Push feature configuration.
Jetbrains Teamcity
7.5
CVSSv3
CVE-2022-25264
In JetBrains TeamCity prior to 2021.2.3, environment variables of the "password" type could be logged in some cases.
Jetbrains Teamcity
4.8
CVSSv3
CVE-2022-29811
In JetBrains Hub prior to 2022.1.14638 stored XSS via project icon was possible.
Jetbrains Hub
7.5
CVSSv3
CVE-2022-24327
In JetBrains Hub prior to 2021.1.13890, integration with JetBrains Account exposed an API key with excessive permissions.
Jetbrains Hub
6.5
CVSSv3
CVE-2022-24328
In JetBrains Hub prior to 2021.1.13956, an unprivileged user could perform DoS.
Jetbrains Hub
6.1
CVSSv3
CVE-2022-24330
In JetBrains TeamCity prior to 2021.2.1, a redirection to an external site was possible.
Jetbrains Teamcity
9.8
CVSSv3
CVE-2022-24331
In JetBrains TeamCity prior to 2021.1.4, GitLab authentication impersonation was possible.
Jetbrains Teamcity
5.3
CVSSv3
CVE-2022-24332
In JetBrains TeamCity prior to 2021.2, a logout action didn't remove a Remember Me cookie.
Jetbrains Teamcity
5.3
CVSSv3
CVE-2022-24334
In JetBrains TeamCity prior to 2021.2.1, the Agent Push feature allowed selection of any private key on the server.
Jetbrains Teamcity
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
camera
bypass
CVE-2024-3592
CVE-2024-37383
CVE-2024-24919
CVE-2024-27822
CVE-2024-36788
CVE-2024-36789
man-in-the-middle
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »