Vulnerabilities > Jetbrains

DATE CVE VULNERABILITY TITLE RISK
2022-11-03 CVE-2022-44623 Unspecified vulnerability in Jetbrains Teamcity
In JetBrains TeamCity version before 2022.10, Project Viewer could see scrambled secure values in the MetaRunner settings
network
low complexity
jetbrains
7.5
2022-11-03 CVE-2022-44624 Information Exposure Through Log Files vulnerability in Jetbrains Teamcity
In JetBrains TeamCity version before 2022.10, Password parameters could be exposed in the build log if they contained special characters
network
low complexity
jetbrains CWE-532
7.5
2022-11-03 CVE-2022-44646 Unspecified vulnerability in Jetbrains Teamcity
In JetBrains TeamCity version before 2022.10, no audit items were added upon editing a user's settings
network
low complexity
jetbrains
5.3
2022-09-23 CVE-2022-40979 Information Exposure Through Log Files vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2022.04.4 environmental variables of "password" type could be logged when using custom Perforce executable
network
low complexity
jetbrains CWE-532
5.3
2022-09-19 CVE-2022-40978 Uncontrolled Search Path Element vulnerability in Jetbrains Intellij Idea
The installer of JetBrains IntelliJ IDEA before 2022.2.2 was vulnerable to EXE search order hijacking
local
low complexity
jetbrains CWE-427
7.8
2022-08-12 CVE-2022-38179 Incorrect Comparison vulnerability in Jetbrains Ktor
JetBrains Ktor before 2.1.0 was vulnerable to the Reflect File Download attack
network
low complexity
jetbrains CWE-697
6.1
2022-08-12 CVE-2022-38180 Improper Authentication vulnerability in Jetbrains Ktor
In JetBrains Ktor before 2.1.0 the wrong authentication provider could be selected in some cases
network
low complexity
jetbrains CWE-287
6.5
2022-08-10 CVE-2022-38133 Information Exposure Through Log Files vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2022.04.3 the private SSH key could be written to the server log in some cases
network
low complexity
jetbrains CWE-532
5.3
2022-08-03 CVE-2022-37396 Unspecified vulnerability in Jetbrains Rider
In JetBrains Rider before 2022.2 Trust and Open Project dialog could be bypassed, leading to local code execution
local
low complexity
jetbrains
7.8
2022-07-28 CVE-2022-37009 Code Injection vulnerability in Jetbrains Intellij Idea
In JetBrains IntelliJ IDEA before 2022.2 local code execution via a Vagrant executable was possible
local
low complexity
jetbrains CWE-94
7.8