Vulnerabilities (CVE)

Filtered by vendor Jetbrains Subscribe
Total 618 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2026-65908 1 Jetbrains 1 Pycharm 2026-08-03 N/A 8.6 HIGH
In JetBrains PyCharm before 2026.1.4, 2026.2 arbitrary code execution via malicious Python executable was possible on untrusted project open
CVE-2026-64815 1 Jetbrains 1 Intellij Idea 2026-07-28 N/A 8.1 HIGH
In JetBrains IntelliJ IDEA before 2026.2 arbitrary code injection was possible via UI Designer form files
CVE-2026-64814 1 Jetbrains 1 Intellij Idea 2026-07-28 N/A 8.6 HIGH
In JetBrains IntelliJ IDEA before 2026.2 unauthorized file access was possible in a Remote Development session
CVE-2026-64813 1 Jetbrains 1 Intellij Idea 2026-07-28 N/A 10.0 CRITICAL
In JetBrains IntelliJ IDEA before 2026.2 unauthorized settings modification was possible in a Remote Development session
CVE-2026-64812 1 Jetbrains 1 Intellij Idea 2026-07-28 N/A 10.0 CRITICAL
In JetBrains IntelliJ IDEA before 2026.2 unauthorized input injection was possible in a Remote Development session
CVE-2026-64811 1 Jetbrains 1 Intellij Idea 2026-07-28 N/A 7.8 HIGH
In JetBrains IntelliJ IDEA before 2026.2 arbitrary code execution was possible before granting project trust via development container configuration
CVE-2026-64810 1 Jetbrains 1 Intellij Idea 2026-07-28 N/A 4.3 MEDIUM
In JetBrains IntelliJ IDEA before 2026.2 hTML injection was possible in an IDE notification, allowing silent user activity tracking
CVE-2026-64809 1 Jetbrains 1 Phpstorm 2026-07-28 N/A 8.4 HIGH
In JetBrains PhpStorm before 2026.2 arbitrary code execution was possible before granting project trust via the configured interpreter
CVE-2026-64808 1 Jetbrains 1 Phpstorm 2026-07-28 N/A 8.4 HIGH
In JetBrains PhpStorm before 2026.2 arbitrary code execution was possible before granting project trust via project tooling
CVE-2026-64807 1 Jetbrains 1 Webstorm 2026-07-28 N/A 7.8 HIGH
In JetBrains WebStorm before 2026.2 arbitrary code execution was possible via a project-supplied linter configuration
CVE-2026-64806 1 Jetbrains 1 Webstorm 2026-07-28 N/A 8.4 HIGH
In JetBrains WebStorm before 2026.2 arbitrary code execution was possible before granting project trust via the configured Node.js interpreter
CVE-2026-64805 1 Jetbrains 1 Webstorm 2026-07-28 N/A 8.4 HIGH
In JetBrains WebStorm before 2026.2 arbitrary code execution was possible before granting project trust via project-local package-manager tooling
CVE-2026-64804 1 Jetbrains 1 Webstorm 2026-07-28 N/A 8.4 HIGH
In JetBrains WebStorm before 2026.2 arbitrary code execution was possible before granting project trust via project-local linter tooling
CVE-2026-64803 1 Jetbrains 1 Goland 2026-07-28 N/A 7.8 HIGH
In JetBrains GoLand before 2026.2 arbitrary code execution was possible before granting project trust via the configured Go SDK
CVE-2026-64802 1 Jetbrains 1 Goland 2026-07-28 N/A 7.8 HIGH
In JetBrains GoLand before 2026.2 arbitrary code execution was possible before granting project trust in the Go Modules integration
CVE-2026-64800 1 Jetbrains 1 Goland 2026-07-28 N/A 3.5 LOW
In JetBrains GoLand before 2026.2 sensitive configuration values written to log files by default
CVE-2026-49385 1 Jetbrains 1 Youtrack 2026-07-22 N/A 6.5 MEDIUM
In JetBrains YouTrack before 2026.1.13570 improper access control allowed low-privileged users to modify service accounts
CVE-2026-49383 1 Jetbrains 1 Intellij Idea 2026-07-22 N/A 3.3 LOW
In JetBrains IntelliJ IDEA before 2026.1 xXE in the UI Designer form parser was possible
CVE-2026-49380 1 Jetbrains 1 Teamcity 2026-07-22 N/A 3.1 LOW
In JetBrains TeamCity before 2026.1 open redirect in the SAML plugin was possible
CVE-2026-49372 1 Jetbrains 1 Teamcity 2026-07-22 N/A 7.5 HIGH
In JetBrains TeamCity before 2026.1, 2025.11.5 unauthenticated SSRF via build status was possible