Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
intellij idea vulnerabilities and exploits
(subscribe to this query)
7.8
CVSSv3
CVE-2022-37009
In JetBrains IntelliJ IDEA prior to 2022.2 local code execution via a Vagrant executable was possible
Jetbrains Intellij Idea
3.3
CVSSv3
CVE-2022-37010
In JetBrains IntelliJ IDEA prior to 2022.2 email address validation in the "Git User Name Is Not Defined" dialog was missed
Jetbrains Intellij Idea
9.8
CVSSv3
CVE-2019-9186
In several JetBrains IntelliJ IDEA versions, a Spring Boot run configuration with the default setting allowed remote malicious users to execute code when the configuration is running, because a JMX server listens on all interfaces (instead of listening on only the localhost inter...
Jetbrains Intellij Idea
9.8
CVSSv3
CVE-2019-9823
In several JetBrains IntelliJ IDEA versions, creating remote run configurations of JavaEE application servers leads to saving a cleartext record of the server credentials in the IDE configuration files. The issue has been fixed in the following versions: 2018.3.5, 2018.2.8, 2018....
Jetbrains Intellij Idea
5.3
CVSSv3
CVE-2019-18361
JetBrains IntelliJ IDEA prior to 2019.2 allows local user privilege escalation, potentially leading to arbitrary code execution.
Jetbrains Intellij Idea
7.5
CVSSv3
CVE-2020-7914
In JetBrains IntelliJ IDEA 2019.2, an XSLT debugger plugin misconfiguration allows arbitrary file read operations over the network. This issue was fixed in 2019.3.
Jetbrains Intellij Idea
3.3
CVSSv3
CVE-2022-46825
In JetBrains IntelliJ IDEA prior to 2022.3 the built-in web server leaked information about open projects.
Jetbrains Intellij Idea
5.5
CVSSv3
CVE-2022-46826
In JetBrains IntelliJ IDEA prior to 2022.3 the built-in web server allowed an arbitrary file to be read by exploiting a path traversal vulnerability.
Jetbrains Intellij Idea
5.5
CVSSv3
CVE-2022-46827
In JetBrains IntelliJ IDEA prior to 2022.3 an XXE attack leading to SSRF via requests to custom plugin repositories was possible.
Jetbrains Intellij Idea
7.8
CVSSv3
CVE-2022-40978
The installer of JetBrains IntelliJ IDEA prior to 2022.2.2 was vulnerable to EXE search order hijacking
Jetbrains Intellij Idea
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
NULL pointer dereference
CVE-2023-52689
CVE-2024-23803
client side
CVE-2023-52696
information disclosure
CVE-2024-35843
CVE-2024-27130
CVE-2023-52697
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
NEXT »