Vulnerabilities > Jetbrains > Intellij Idea > 2017.3.4
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-02-25 | CVE-2022-24345 | Unspecified vulnerability in Jetbrains Intellij Idea In JetBrains IntelliJ IDEA before 2021.2.4, local code execution (without permission from a user) upon opening a project was possible. | 7.8 |
2022-02-25 | CVE-2022-24346 | Unspecified vulnerability in Jetbrains Intellij Idea In JetBrains IntelliJ IDEA before 2021.3.1, local code execution via RLO (Right-to-Left Override) characters was possible. | 7.8 |
2021-05-11 | CVE-2021-29263 | Unspecified vulnerability in Jetbrains Intellij Idea In JetBrains IntelliJ IDEA 2020.3.3, local code execution was possible because of insufficient checks when getting the project from VCS. | 7.8 |
2021-05-11 | CVE-2021-30006 | XXE vulnerability in Jetbrains Intellij Idea In IntelliJ IDEA before 2020.3.3, XXE was possible, leading to information disclosure. | 7.5 |
2021-05-11 | CVE-2021-30504 | Resource Exhaustion vulnerability in Jetbrains Intellij Idea In JetBrains IntelliJ IDEA before 2021.1, DoS was possible because of unbounded resource allocation. | 7.5 |
2021-02-03 | CVE-2021-25758 | Deserialization of Untrusted Data vulnerability in Jetbrains Intellij Idea In JetBrains IntelliJ IDEA before 2020.3, potentially insecure deserialization of the workspace model could lead to local code execution. | 7.8 |
2021-02-03 | CVE-2021-25756 | Unspecified vulnerability in Jetbrains Intellij Idea In JetBrains IntelliJ IDEA before 2020.2, HTTP links were used for several remote repositories instead of HTTPS. | 5.3 |
2020-11-16 | CVE-2020-27622 | Unspecified vulnerability in Jetbrains Intellij Idea In JetBrains IntelliJ IDEA before 2020.2, the built-in web server could expose information about the IDE version. | 5.3 |
2020-04-22 | CVE-2020-11690 | Unspecified vulnerability in Jetbrains Intellij Idea In JetBrains IntelliJ IDEA before 2020.1, the license server could be resolved to an untrusted host in some cases. | 9.8 |
2020-01-31 | CVE-2020-7914 | Unspecified vulnerability in Jetbrains Intellij Idea In JetBrains IntelliJ IDEA 2019.2, an XSLT debugger plugin misconfiguration allows arbitrary file read operations over the network. | 7.5 |