In JetBrains IntelliJ IDEA before 2022.3 an XXE attack leading to SSRF via requests to custom plugin repositories was possible.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.jetbrains.com/privacy-security/issues-fixed/ |
|
History
Tue, 22 Apr 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: JetBrains
Published:
Updated: 2025-04-22T18:07:59.925Z
Reserved: 2022-12-08T16:48:48.370Z
Link: CVE-2022-46827
Updated: 2024-08-03T14:39:38.709Z
Status : Modified
Published: 2022-12-08T18:15:10.117
Modified: 2024-11-21T07:31:07.657
Link: CVE-2022-46827
No data.
OpenCVE Enrichment
No data.
Weaknesses