Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
jetbrains vulnerabilities and exploits
(subscribe to this query)
8.1
CVSSv3
CVE-2022-24335
JetBrains TeamCity prior to 2021.2 was vulnerable to a Time-of-check/Time-of-use (TOCTOU) race-condition attack in agent registration via XML-RPC.
Jetbrains Teamcity
8.1
CVSSv3
CVE-2019-10101
JetBrains Kotlin versions prior to 1.3.30 were resolving artifacts using an http connection during the build process, potentially allowing an MITM attack.
Jetbrains Kotlin
8.1
CVSSv3
CVE-2019-10102
JetBrains Ktor framework (created using the Kotlin IDE template) versions prior to 1.1.0 were resolving artifacts using an http connection during the build process, potentially allowing an MITM attack. This issue was fixed in Kotlin plugin version 1.3.30.
Jetbrains Kotlin
Jetbrains Ktor
8.1
CVSSv3
CVE-2019-10103
JetBrains IntelliJ IDEA projects created using the Kotlin (JS Client/JVM Server) IDE Template were resolving Gradle artifacts using an http connection, potentially allowing an MITM attack. This issue, which was fixed in Kotlin plugin version 1.3.30, is similar to CVE-2019-10101.
Jetbrains Kotlin
8.1
CVSSv3
CVE-2019-9872
In several versions of JetBrains IntelliJ IDEA Ultimate, creating run configurations for cloud application servers leads to saving a cleartext unencrypted record of the server credentials in the IDE configuration files. If the Settings Repository plugin was then used and configur...
Jetbrains Intellij Idea
7.8
CVSSv3
CVE-2023-39261
In JetBrains IntelliJ IDEA prior to 2023.2 plugin for Space was requesting excessive permissions
Jetbrains Intellij Idea
7.8
CVSSv3
CVE-2022-48481
In JetBrains Toolbox App prior to 1.28 a DYLIB injection on macOS was possible
Jetbrains Toolbox
7.8
CVSSv3
CVE-2022-48431
In JetBrains IntelliJ IDEA prior to 2023.1 in some cases, Gradle and Maven projects could be imported without the “Trust Project” confirmation.
Jetbrains Intellij Idea
7.8
CVSSv3
CVE-2022-47896
In JetBrains IntelliJ IDEA prior to 2022.3.1 code Templates were vulnerable to SSTI attacks.
Jetbrains Intellij Idea
7.8
CVSSv3
CVE-2022-46828
In JetBrains IntelliJ IDEA prior to 2022.3 a DYLIB injection on macOS was possible.
Jetbrains Intellij Idea
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2020-4463
CVE-2024-29895
inject
CVE-2023-52689
CVE-2024-5049
CVE-2024-5051
privilege escalation
physical
CVE-2023-52676
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
2
3
4
5
6
7
8
9
10
NEXT »