Known Vulnerabilities for Upsource by Jetbrains
Listed below are 5 of the newest known vulnerabilities associated with "Upsource" by "Jetbrains".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2021-30482 json | In JetBrains UpSource before 2020.1.1883, application passwords were not revoked correctly | 7.5 - HIGH | 2021-05-11 | 2021-05-20 |
| CVE-2019-19704 json | In JetBrains Upsource before 2020.1, information disclosure is possible because of an incorrect user matching algorithm. | 7.5 - HIGH | 2020-08-08 | 2021-07-21 |
| CVE-2019-14961 json | JetBrains Upsource before 2019.1.1412 was not properly escaping HTML tags in a code block comments, leading to XSS. | 6.1 - MEDIUM | 2019-10-01 | 2019-10-02 |
| CVE-2019-12157 json | In JetBrains UpSource versions before 2018.2 build 1293, there is credential disclosure via RPC commands. | 9.8 - CRITICAL | 2019-10-02 | 2021-01-26 |
| CVE-2019-12156 json | Server metadata could be exposed because one of the error messages reflected the whole response back to the client in JetBrai... | 5.3 - MEDIUM | 2019-10-02 | 2021-11-04 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Jetbrains | Upsource | 3.5 | |||
| Application | Jetbrains | Upsource | 3.5 | |||
| Application | Jetbrains | Upsource | 3.5 | |||
| Application | Jetbrains | Upsource | 2020.1 | |||
| Application | Jetbrains | Upsource | 2019.1.1412 | |||
| Application | Jetbrains | Upsource | 2018.2 | |||
| Application | Jetbrains | Upsource | 2018.2 | |||
| Application | Jetbrains | Upsource | 2018.2 | |||
| Application | Jetbrains | Upsource | 2018.2 | |||
| Application | Jetbrains | Upsource | 2018.2 | |||
| Application | Jetbrains | Upsource | 2018.1 | |||
| Application | Jetbrains | Upsource | 2018.1 | |||
| Application | Jetbrains | Upsource | 2018.1 | |||
| Application | Jetbrains | Upsource | 2018.1 | |||
| Application | Jetbrains | Upsource | 2017.3 | |||
| Application | Jetbrains | Upsource | 2017.3 | |||
| Application | Jetbrains | Upsource | 2017.3 | |||
| Application | Jetbrains | Upsource | 2017.3 | |||
| Application | Jetbrains | Upsource | 2017.2 | |||
| Application | Jetbrains | Upsource | 2017.2 |