Known Vulnerabilities for Upsource by Jetbrains
Listed below are 5 of the newest known vulnerabilities associated with "Upsource" by "Jetbrains".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2021-30482 | In JetBrains UpSource before 2020.1.1883, application passwords were not revoked correctly | 7.5 - HIGH | 2021-05-11 | 2021-05-20 |
| CVE-2019-19704 | In JetBrains Upsource before 2020.1, information disclosure is possible because of an incorrect user matching algorithm. | 7.5 - HIGH | 2020-08-08 | 2021-07-21 |
| CVE-2019-14961 | JetBrains Upsource before 2019.1.1412 was not properly escaping HTML tags in a code block comments, leading to XSS. | 6.1 - MEDIUM | 2019-10-01 | 2019-10-02 |
| CVE-2019-12157 | In JetBrains UpSource versions before 2018.2 build 1293, there is credential disclosure via RPC commands. | 9.8 - CRITICAL | 2019-10-02 | 2021-01-26 |
| CVE-2019-12156 | Server metadata could be exposed because one of the error messages reflected the whole response back to the client in JetBrai... | 5.3 - MEDIUM | 2019-10-02 | 2021-11-04 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Jetbrains | Upsource | 3.5 | All | All | All |
| Application | Jetbrains | Upsource | 3.5 | build_3597 | All | All |
| Application | Jetbrains | Upsource | 3.5 | build_3616 | All | All |
| Application | Jetbrains | Upsource | 2020.1 | All | All | All |
| Application | Jetbrains | Upsource | 2019.1.1412 | All | All | All |
| Application | Jetbrains | Upsource | 2018.2 | build_1141 | All | All |
| Application | Jetbrains | Upsource | 2018.2 | - | All | All |
| Application | Jetbrains | Upsource | 2018.2 | build_1013 | All | All |
| Application | Jetbrains | Upsource | 2018.2 | build_1154 | All | All |
| Application | Jetbrains | Upsource | 2018.2 | build_1291 | All | All |
| Application | Jetbrains | Upsource | 2018.1 | build_584 | All | All |
| Application | Jetbrains | Upsource | 2018.1 | build_539 | All | All |
| Application | Jetbrains | Upsource | 2018.1 | build_357 | All | All |
| Application | Jetbrains | Upsource | 2018.1 | - | All | All |
| Application | Jetbrains | Upsource | 2017.3 | - | All | All |
| Application | Jetbrains | Upsource | 2017.3 | build_2888 | All | All |
| Application | Jetbrains | Upsource | 2017.3 | build_2774 | All | All |
| Application | Jetbrains | Upsource | 2017.3 | build_2593 | All | All |
| Application | Jetbrains | Upsource | 2017.2 | build_2398 | All | All |
| Application | Jetbrains | Upsource | 2017.2 | build_2307 | All | All |