Filtered by vendor Jetbrains Subscriptions
Total 382 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-46827 1 Jetbrains 1 Intellij Idea 2024-08-03 3.9 Low
In JetBrains IntelliJ IDEA before 2022.3 an XXE attack leading to SSRF via requests to custom plugin repositories was possible.
CVE-2022-46826 1 Jetbrains 1 Intellij Idea 2024-08-03 6.2 Medium
In JetBrains IntelliJ IDEA before 2022.3 the built-in web server allowed an arbitrary file to be read by exploiting a path traversal vulnerability.
CVE-2022-46824 2 Apple, Jetbrains 2 Macos, Intellij Idea 2024-08-03 5.6 Medium
In JetBrains IntelliJ IDEA before 2022.2.4 a buffer overflow in the fsnotifier daemon on macOS was possible.
CVE-2022-46829 1 Jetbrains 1 Jetbrains Gateway 2024-08-03 7.1 High
In JetBrains JetBrains Gateway before 2022.3 a client could connect without a valid token if the host consented.
CVE-2022-45471 1 Jetbrains 1 Hub 2024-08-03 3.5 Low
In JetBrains Hub before 2022.3.15181 Throttling was missed when sending emails to a particular email address
CVE-2022-44646 1 Jetbrains 1 Teamcity 2024-08-03 2.2 Low
In JetBrains TeamCity version before 2022.10, no audit items were added upon editing a user's settings
CVE-2022-44622 1 Jetbrains 1 Teamcity 2024-08-03 2.7 Low
In JetBrains TeamCity version between 2021.2 and 2022.10 access permissions for secure token health items were excessive
CVE-2022-44624 1 Jetbrains 1 Teamcity 2024-08-03 6.5 Medium
In JetBrains TeamCity version before 2022.10, Password parameters could be exposed in the build log if they contained special characters
CVE-2022-44623 1 Jetbrains 1 Teamcity 2024-08-03 6.5 Medium
In JetBrains TeamCity version before 2022.10, Project Viewer could see scrambled secure values in the MetaRunner settings
CVE-2022-40978 1 Jetbrains 1 Intellij Idea 2024-08-03 7.5 High
The installer of JetBrains IntelliJ IDEA before 2022.2.2 was vulnerable to EXE search order hijacking
CVE-2022-40979 1 Jetbrains 1 Teamcity 2024-08-03 4.4 Medium
In JetBrains TeamCity before 2022.04.4 environmental variables of "password" type could be logged when using custom Perforce executable
CVE-2022-38180 1 Jetbrains 1 Ktor 2024-08-03 5.3 Medium
In JetBrains Ktor before 2.1.0 the wrong authentication provider could be selected in some cases
CVE-2022-38179 1 Jetbrains 1 Ktor 2024-08-03 4.7 Medium
JetBrains Ktor before 2.1.0 was vulnerable to the Reflect File Download attack
CVE-2022-38133 1 Jetbrains 1 Teamcity 2024-08-03 3.2 Low
In JetBrains TeamCity before 2022.04.3 the private SSH key could be written to the server log in some cases
CVE-2022-37396 1 Jetbrains 1 Rider 2024-08-03 4.1 Medium
In JetBrains Rider before 2022.2 Trust and Open Project dialog could be bypassed, leading to local code execution
CVE-2022-37010 1 Jetbrains 1 Intellij Idea 2024-08-03 3.6 Low
In JetBrains IntelliJ IDEA before 2022.2 email address validation in the "Git User Name Is Not Defined" dialog was missed
CVE-2022-37009 1 Jetbrains 1 Intellij Idea 2024-08-03 3.9 Low
In JetBrains IntelliJ IDEA before 2022.2 local code execution via a Vagrant executable was possible
CVE-2022-36322 1 Jetbrains 1 Teamcity 2024-08-03 5.4 Medium
In JetBrains TeamCity before 2022.04.2 build parameter injection was possible
CVE-2022-36321 1 Jetbrains 1 Teamcity 2024-08-03 4.1 Medium
In JetBrains TeamCity before 2022.04.2 the private SSH key could be written to the build log in some cases
CVE-2022-34894 1 Jetbrains 1 Hub 2024-08-03 3.5 Low
In JetBrains Hub before 2022.2.14799, insufficient access control allowed the hijacking of untrusted services