Vulnerabilities
Vulnerable Software
Security Vulnerabilities
In JetBrains YouTrack before 2026.2.19197 helpdesk project's Authorized Reporters list could be bypassed
CVSS Score
4.3
EPSS Score
0.002
Published
2026-09-30
In JetBrains YouTrack before 2026.2.19197 low-level Admin Read permission users could disclose integration credentials via import configurations
CVSS Score
3.3
EPSS Score
0.002
Published
2026-09-30
In JetBrains YouTrack before 2026.2.19197 missing authorisation on several endpoints allowed authenticated users to access information from other projects
CVSS Score
2.7
EPSS Score
0.002
Published
2026-09-30
In JetBrains YouTrack before 2026.2.19197 missing authorisation in the notification template preview allowed Project Administrators to read restricted issues
CVSS Score
4.9
EPSS Score
0.003
Published
2026-09-30
In JetBrains YouTrack before 2026.2.19197 authorisation bypass in the scripts debugger allowed arbitrary code execution
CVSS Score
8.2
EPSS Score
0.003
Published
2026-09-30
In JetBrains YouTrack before 2026.2.19197 project Admin could trigger DoS via a notification template
CVSS Score
6.5
EPSS Score
0.008
Published
2026-09-30
In JetBrains YouTrack before 2026.2.18991 missing authorisation allowed users with read-only project access to overwrite project notification templates
CVSS Score
7.6
EPSS Score
0.002
Published
2026-09-30
In JetBrains YouTrack before 2026.2.18991 stored HTML injection via the User-Agent header was possible
CVSS Score
4.7
EPSS Score
0.002
Published
2026-09-30
In JetBrains YouTrack before 2026.2.18991 stored SMTP server credentials could be disclosed by changing the server host
CVSS Score
2.7
EPSS Score
0.002
Published
2026-09-30
In JetBrains Rider before 2026.2.1 aI Assistant could auto-update third-party skills without user confirmation
CVSS Score
4.8
EPSS Score
0.001
Published
2026-09-30


Contact Us

Shodan ® - All rights reserved