Vulnerabilities > Jetbrains
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2025-04-25 | CVE-2025-46432 | Information Exposure Through Log Files vulnerability in Jetbrains Teamcity In JetBrains TeamCity before 2025.03.1 base64-encoded credentials could be exposed in build logs | 6.5 |
2025-04-25 | CVE-2025-46433 | Relative Path Traversal vulnerability in Jetbrains Teamcity In JetBrains TeamCity before 2025.03.1 improper path validation in loggingPreset parameter was possible | 9.8 |
2025-04-25 | CVE-2025-46618 | Cross-site Scripting vulnerability in Jetbrains Teamcity In JetBrains TeamCity before 2025.03.1 stored XSS was possible on Data Directory tab | 6.1 |
2025-04-17 | CVE-2025-43014 | Missing Critical Step in Authentication vulnerability in Jetbrains Toolbox In JetBrains Toolbox App before 2.6 the SSH plugin established connections without sufficient user confirmation | 6.5 |
2025-04-17 | CVE-2025-43015 | Insecure Default Initialization of Resource vulnerability in Jetbrains Rubymine In JetBrains RubyMine before 2025.1 remote Interpreter overwrote ports to listen on all interfaces | 6.5 |
2025-04-17 | CVE-2025-42921 | Improper Validation of Certificate with Host Mismatch vulnerability in Jetbrains Toolbox In JetBrains Toolbox App before 2.6 host key verification was missing in SSH plugin | 6.5 |
2025-04-17 | CVE-2025-43013 | Cleartext Transmission of Sensitive Information vulnerability in Jetbrains Toolbox In JetBrains Toolbox App before 2.6 unencrypted credential transmission during SSH authentication was possible | 7.5 |
2025-03-27 | CVE-2025-31139 | Information Exposure Through Log Files vulnerability in Jetbrains Teamcity In JetBrains TeamCity before 2025.03 base64 encoded password could be exposed in build log | 6.5 |
2025-03-27 | CVE-2025-31140 | Cross-site Scripting vulnerability in Jetbrains Teamcity In JetBrains TeamCity before 2025.03 stored XSS was possible on Cloud Profiles page | 6.1 |
2025-03-27 | CVE-2025-31141 | Information Exposure Through an Error Message vulnerability in Jetbrains Teamcity In JetBrains TeamCity before 2025.03 exception could lead to credential leakage on Cloud Profiles page | 7.5 |