Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
jetbrains intellij idea vulnerabilities and exploits
(subscribe to this query)
7.7
CVSSv3
CVE-2022-29814
In JetBrains IntelliJ IDEA prior to 2022.1 local code execution via HTML descriptions in custom JSON schemas was possible
Jetbrains Intellij Idea
6.7
CVSSv3
CVE-2022-29815
In JetBrains IntelliJ IDEA prior to 2022.1 local code execution via workspace settings was possible
Jetbrains Intellij Idea
3.2
CVSSv3
CVE-2022-29816
In JetBrains IntelliJ IDEA prior to 2022.1 HTML injection into IDE messages was possible
Jetbrains Intellij Idea
6.1
CVSSv3
CVE-2022-29817
In JetBrains IntelliJ IDEA prior to 2022.1 reflected XSS via error messages in internal web server was possible
Jetbrains Intellij Idea
7.1
CVSSv3
CVE-2022-29818
In JetBrains IntelliJ IDEA prior to 2022.1 origin checks in the internal web server were flawed
Jetbrains Intellij Idea
7.7
CVSSv3
CVE-2022-29819
In JetBrains IntelliJ IDEA prior to 2022.1 local code execution via links in Quick Documentation was possible
Jetbrains Intellij Idea
9.8
CVSSv3
CVE-2023-51655
In JetBrains IntelliJ IDEA prior to 2023.3.2 code execution was possible in Untrusted Project mode via a malicious plugin repository specified in the project configuration
Jetbrains Intellij Idea
5.3
CVSSv3
CVE-2021-25756
In JetBrains IntelliJ IDEA prior to 2020.2, HTTP links were used for several remote repositories instead of HTTPS.
Jetbrains Intellij Idea
7.8
CVSSv3
CVE-2021-25758
In JetBrains IntelliJ IDEA prior to 2020.3, potentially insecure deserialization of the workspace model could lead to local code execution.
Jetbrains Intellij Idea
5.9
CVSSv3
CVE-2019-14954
JetBrains IntelliJ IDEA prior to 2019.2 was resolving the markdown plantuml artifact download link via a cleartext http connection.
Jetbrains Intellij Idea
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-36954
CVE-2024-36933
CVE-2024-24919
CVE-2024-36923
CVE-2024-2961
CVE-2024-36925
bypass
encryption
command injection
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
NEXT »