In JetBrains YouTrack before 2025.2.86935,
2025.2.87167,
2025.3.87341,
2025.3.87344 improper iframe configuration in widget sandbox allows popups to bypass security restrictions
2025.2.87167,
2025.3.87341,
2025.3.87344 improper iframe configuration in widget sandbox allows popups to bypass security restrictions
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.jetbrains.com/privacy-security/issues-fixed/ |
![]() ![]() |
History
Tue, 29 Jul 2025 08:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Jetbrains
Jetbrains youtrack |
|
Vendors & Products |
Jetbrains
Jetbrains youtrack |
Mon, 28 Jul 2025 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 28 Jul 2025 16:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | In JetBrains YouTrack before 2025.2.86935, 2025.2.87167, 2025.3.87341, 2025.3.87344 improper iframe configuration in widget sandbox allows popups to bypass security restrictions | |
Weaknesses | CWE-1021 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: JetBrains
Published:
Updated: 2025-07-28T17:26:29.884Z
Reserved: 2025-07-24T11:12:07.461Z
Link: CVE-2025-54527

Updated: 2025-07-28T17:26:14.891Z

Status : Awaiting Analysis
Published: 2025-07-28T17:15:31.753
Modified: 2025-07-29T14:14:29.590
Link: CVE-2025-54527

No data.

Updated: 2025-07-29T07:59:26Z