Vulnerabilities > Jetbrains > HUB > 2022.3.15573

DATE CVE VULNERABILITY TITLE RISK
2025-01-21 CVE-2025-24456 Missing Authentication for Critical Function vulnerability in Jetbrains HUB
In JetBrains Hub before 2024.3.55417 privilege escalation was possible via LDAP authentication mapping
network
low complexity
jetbrains CWE-306
8.8
2024-10-28 CVE-2024-50573 Missing Authorization vulnerability in Jetbrains HUB
In JetBrains Hub before 2024.3.47707 improper access control allowed users to generate permanent tokens for unauthorized services
network
low complexity
jetbrains CWE-862
5.4
2024-06-18 CVE-2024-38507 Cross-site Scripting vulnerability in Jetbrains HUB
In JetBrains Hub before 2024.2.34646 stored XSS via project description was possible
network
low complexity
jetbrains CWE-79
5.4
2023-04-24 CVE-2022-48477 Unspecified vulnerability in Jetbrains HUB
In JetBrains Hub before 2023.1.15725 SSRF protection in Auth Module integration was missing
network
low complexity
jetbrains
critical
9.8