Vulnerabilities
Vulnerable Software
Jetbrains:  >> Intellij Idea  Security Vulnerabilities
In JetBrains IntelliJ IDEA before 2026.1.4, 2026.2 code execution via path traversal in project workspace ID handling was possible
CVSS Score
9.6
EPSS Score
0.005
Published
2026-07-10
In JetBrains IntelliJ IDEA before 2026.1 code execution was possible via template injection in the Copyright plugin
CVSS Score
4.5
EPSS Score
0.001
Published
2026-05-29
In JetBrains IntelliJ IDEA before 2026.1 xXE in the UI Designer form parser was possible
CVSS Score
3.3
EPSS Score
0.001
Published
2026-05-29
In JetBrains IntelliJ IDEA before 2026.1.1 command injection was possible via filename completion
CVSS Score
7.8
EPSS Score
0.005
Published
2026-05-29
In JetBrains IntelliJ IDEA before 2026.1.1 command execution was possible via the guest user account
CVSS Score
8.0
EPSS Score
0.003
Published
2026-05-29
In JetBrains IntelliJ IDEA before 2024.3.7.1, 2025.1.7.1, 2025.2.6.2, 2025.3.4.1, 2026.1.1 reading arbitrary local files was possible via built-in web server
CVSS Score
7.4
EPSS Score
0.004
Published
2026-04-30
In JetBrains IntelliJ IDEA before 2025.3 missing confirmation allowed opening of untrusted remote projects over SSH
CVSS Score
5.4
EPSS Score
0.001
Published
2025-12-16
In JetBrains IntelliJ IDEA before 2025.2 credentials disclosure was possible via remote reference
CVSS Score
4.7
EPSS Score
0.002
Published
2025-08-20
In JetBrains IntelliJ IDEA before 2025.2 improper access control allowed Code With Me guest to discover hidden files
CVSS Score
6.5
EPSS Score
0.002
Published
2025-08-20
In JetBrains IntelliJ IDEA before 2025.2 unexpected plugin startup was possible due to automatic LSP server start
CVSS Score
6.5
EPSS Score
0.001
Published
2025-08-20


Contact Us

Shodan ® - All rights reserved