Vulnerabilities > Jetbrains > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2019-10-01 | CVE-2019-15038 | Unspecified vulnerability in Jetbrains Teamcity 2018.2.4 An issue was discovered in JetBrains TeamCity 2018.2.4. | 5.0 |
2019-10-01 | CVE-2019-14960 | Untrusted Search Path vulnerability in Jetbrains Rider JetBrains Rider before 2019.1.2 was using an unsigned JetBrains.Rider.Unity.Editor.Plugin.Repacked.dll file. | 4.6 |
2019-10-01 | CVE-2019-14957 | Insecure Storage of Sensitive Information vulnerability in Jetbrains VIM The JetBrains Vim plugin before version 0.52 was storing individual project data in the global vim_settings.xml file. | 5.0 |
2019-10-01 | CVE-2019-14955 | Weak Password Recovery Mechanism for Forgotten Password vulnerability in Jetbrains HUB In JetBrains Hub versions earlier than 2018.4.11436, there was no option to force a user to change the password and no password expiration policy was implemented. | 5.0 |
2019-10-01 | CVE-2019-14953 | Cross-site Scripting vulnerability in Jetbrains Youtrack JetBrains YouTrack versions before 2019.2.53938 had a possible XSS through issue attachments when using the Firefox browser. | 4.3 |
2019-10-01 | CVE-2019-15039 | Path Traversal vulnerability in Jetbrains Teamcity 2018.2.4 An issue was discovered in JetBrains TeamCity 2018.2.4. | 6.8 |
2019-10-01 | CVE-2019-14954 | Missing Encryption of Sensitive Data vulnerability in Jetbrains Intellij Idea JetBrains IntelliJ IDEA before 2019.2 was resolving the markdown plantuml artifact download link via a cleartext http connection. | 4.3 |
2019-10-01 | CVE-2019-14952 | Cross-site Scripting vulnerability in Jetbrains Youtrack JetBrains YouTrack versions before 2019.1.52584 had a possible XSS in the issue titles. | 4.3 |
2019-09-05 | CVE-2019-15848 | Cross-site Scripting vulnerability in Jetbrains Teamcity 2019.1/2019.1.1 JetBrains TeamCity 2019.1 and 2019.1.1 allows cross-site scripting (XSS), potentially making it possible to send an arbitrary HTTP request to a TeamCity server under the name of the currently logged-in user. | 4.3 |
2019-07-03 | CVE-2019-12846 | Unspecified vulnerability in Jetbrains Teamcity A user without the required permissions could gain access to some JetBrains TeamCity settings. | 4.0 |