Vulnerabilities
Vulnerable Software
Security Vulnerabilities
In JetBrains YouTrack before 2026.2.19197 missing authorisation on several endpoints allowed authenticated users to access information from other projects
CVSS Score
2.7
EPSS Score
0.002
Published
2026-09-30
In JetBrains YouTrack before 2026.2.19197 missing authorisation in the notification template preview allowed Project Administrators to read restricted issues
CVSS Score
4.9
EPSS Score
0.003
Published
2026-09-30
In JetBrains YouTrack before 2026.2.19197 authorisation bypass in the scripts debugger allowed arbitrary code execution
CVSS Score
8.2
EPSS Score
0.003
Published
2026-09-30
In JetBrains YouTrack before 2026.2.19197 project Admin could trigger DoS via a notification template
CVSS Score
6.5
EPSS Score
0.008
Published
2026-09-30
In JetBrains YouTrack before 2026.2.18991 missing authorisation allowed users with read-only project access to overwrite project notification templates
CVSS Score
7.6
EPSS Score
0.002
Published
2026-09-30
In JetBrains YouTrack before 2026.2.18991 stored HTML injection via the User-Agent header was possible
CVSS Score
4.7
EPSS Score
0.002
Published
2026-09-30
In JetBrains YouTrack before 2026.2.18991 stored SMTP server credentials could be disclosed by changing the server host
CVSS Score
2.7
EPSS Score
0.002
Published
2026-09-30
In JetBrains Rider before 2026.2.1 aI Assistant could auto-update third-party skills without user confirmation
CVSS Score
4.8
EPSS Score
0.001
Published
2026-09-30
In JetBrains Hub before 2026.2.52366 missing authorisation allowed authenticated users to send arbitrary emails from the server's trusted address
CVSS Score
7.7
EPSS Score
0.002
Published
2026-09-30
In JetBrains YouTrack before 2026.2.19197 reDoS attack was possible via mailbox regex mail-rule filters
CVSS Score
5.9
EPSS Score
0.003
Published
2026-09-30


Contact Us

Shodan ® - All rights reserved