Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In February 2021
In JetBrains IntelliJ IDEA before 2020.2, HTTP links were used for several remote repositories instead of HTTPS.
CVSS Score
5.3
EPSS Score
0.0
Published
2021-02-03
In JetBrains Hub before 2020.1.12629, an open redirect was possible.
CVSS Score
6.1
EPSS Score
0.0
Published
2021-02-03
In JetBrains IntelliJ IDEA before 2020.3, potentially insecure deserialization of the workspace model could lead to local code execution.
CVSS Score
7.8
EPSS Score
0.0
Published
2021-02-03
In JetBrains Hub before 2020.1.12629, an authenticated user can delete 2FA settings of any other user.
CVSS Score
6.5
EPSS Score
0.0
Published
2021-02-03
In JetBrains Hub before 2020.1.12669, information disclosure via the public API was possible.
CVSS Score
5.3
EPSS Score
0.0
Published
2021-02-03
In JetBrains Ktor before 1.5.0, a birthday attack on SessionStorage key was possible.
CVSS Score
5.3
EPSS Score
0.0
Published
2021-02-03
In JetBrains Ktor before 1.4.3, HTTP Request Smuggling was possible.
CVSS Score
5.3
EPSS Score
0.0
Published
2021-02-03
In JetBrains Ktor before 1.4.2, weak cipher suites were enabled by default.
CVSS Score
5.3
EPSS Score
0.0
Published
2021-02-03
In JetBrains YouTrack before 2020.4.4701, CSRF via attachment upload was possible.
CVSS Score
8.8
EPSS Score
0.0
Published
2021-02-03
In JetBrains YouTrack before 2020.4.4701, improper resource access checks were made.
CVSS Score
5.3
EPSS Score
0.0
Published
2021-02-03


Contact Us

Shodan ® - All rights reserved