Known Vulnerabilities for products from Jetbrains

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Jetbrains".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2023-34339 In JetBrains Ktor before 2.3.1 headers containing authentication data could be added to the exception's message Not Provided 2023-06-01 2023-06-01
CVE-2023-34229 In JetBrains TeamCity before 2023.05 stored XSS in GitLab Connection page was possible 5.4 - MEDIUM 2023-05-31 2023-05-31
CVE-2023-34228 In JetBrains TeamCity before 2023.05 authentication checks were missing – 2FA was not checked for some sensitive account ac... Not Provided 2023-05-31 2023-05-31
CVE-2023-34227 In JetBrains TeamCity before 2023.05 a specific endpoint was vulnerable to brute force attacks 7.5 - HIGH 2023-05-31 2023-05-31
CVE-2023-34226 In JetBrains TeamCity before 2023.05 reflected XSS in the Subscriptions page was possible 6.1 - MEDIUM 2023-05-31 2023-05-31
CVE-2023-34225 In JetBrains TeamCity before 2023.05 stored XSS in the NuGet feed page was possible 5.4 - MEDIUM 2023-05-31 2023-05-31
CVE-2023-34224 In JetBrains TeamCity before 2023.05 open redirect during oAuth configuration was possible 4.8 - MEDIUM 2023-05-31 2023-05-31
CVE-2023-34223 In JetBrains TeamCity before 2023.05 parameters of the "password" type from build dependencies could be logged in some cases 5.3 - MEDIUM 2023-05-31 2023-05-31
CVE-2023-34222 In JetBrains TeamCity before 2023.05 possible XSS in the Plugin Vendor URL was possible 6.1 - MEDIUM 2023-05-31 2023-05-31
CVE-2023-34221 In JetBrains TeamCity before 2023.05 stored XSS in the Show Connection page was possible 5.4 - MEDIUM 2023-05-31 2023-05-31
CVE-2022-24442 ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 9.8 - CRITICAL 2022-02-25 2022-03-04
CVE-2022-24347 ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 5.4 - MEDIUM 2022-02-25 2022-03-04
CVE-2022-24346 ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 7.8 - HIGH 2022-02-25 2022-03-04
CVE-2022-24345 ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 7.8 - HIGH 2022-02-25 2022-03-04
CVE-2022-24344 ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 5.4 - MEDIUM 2022-02-25 2022-03-04
CVE-2022-24343 ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 4.3 - MEDIUM 2022-02-25 2022-03-04
CVE-2022-24342 ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 8.8 - HIGH 2022-02-25 2022-03-04
CVE-2022-24341 ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 7.5 - HIGH 2022-02-25 2022-03-04
CVE-2022-24340 ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 9.8 - CRITICAL 2022-02-25 2022-03-04
CVE-2022-24339 ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 5.4 - MEDIUM 2022-02-25 2022-03-04

Known software with vulnerabilities from Jetbrains

Type Vendor Product Version
ApplicationJetbrainsDotpeek10.0
ApplicationJetbrainsGoland2017.3
ApplicationJetbrainsHub1.0.648
ApplicationJetbrainsIdeavim-
ApplicationJetbrainsIdetalk193.4099.10
ApplicationJetbrainsIntellij Idea-
ApplicationJetbrainsKotlin0.9
ApplicationJetbrainsKtor0.0.1
ApplicationJetbrainsMps-
ApplicationJetbrainsOmea Reader2.2
ApplicationJetbrainsPycharm-
ApplicationJetbrainsResharper6.1.37
ApplicationJetbrainsResharper Ultimate2016.1
ApplicationJetbrainsRider-
ApplicationJetbrainsScala2019.2.1
ApplicationJetbrainsSpace-
ApplicationJetbrainsTeamcity2.0
ApplicationJetbrainsToolbox-
ApplicationJetbrainsUpsource1.0
ApplicationJetbrainsVim-

Popular searches for "Jetbrains"

JetBrains: Essential tools for software developers and teams

www.jetbrains.com

@ www.jetbrains.com/?from=yii www.jetbrains.com/index.html www.jetbrains.com/?from=APF www.codingblocks.net/jetbrains www.jetbrains.com/?from=patrikx3 www.jetbrains.com/?from=termsdescriptions Programming tool JetBrains Programmer Kotlin (programming language) Integrated development environment IntelliJ IDEA Software company Software development VMware Software framework Software Cross-platform software Python (programming language) PHP JavaScript Source code C Sharp (programming language) Java (programming language) Computing platform Software engineer

JetBrains Czech software company

JetBrains s.r.o. is a Czech software development company whose tools are targeted towards software developers and project managers. As of 2019, the company has offices in Prague, Saint Petersburg, Moscow, Munich, Boston, Novosibirsk, Amsterdam, Foster City and Marlton, New Jersey. The company offers an extended family of integrated development environments for the programming languages Java, Groovy, Kotlin, Ruby, Python, PHP, C, Objective-C, C , C#, Go, JavaScript and SQL.

© CVE.report 2023 Twitter Nitter Twitter Viewer |

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

CVE.report and Source URL Uptime Status status.cve.report