Stats Digest Feeds
โ† Back to CVEs

Product: Youtrack

7 CVEs โ€” Subscribe via RSS

CVE-2026-103495 MEDIUM 4.3 2026-10-01

In JetBrains YouTrack before 2026.2.19422 missing authorisation allowed reloading of translation catalogs

CVE-2026-103496 MEDIUM 5.4 2026-10-01

In JetBrains YouTrack before 2026.2.19422 iDOR in inbox threads allowed reading other users' notifications

CVE-2026-103497 MEDIUM 5.5 2026-10-01

In JetBrains YouTrack before 2026.2.19422 sSRF was possible via the GitHub VCS integration

CVE-2026-103491 MEDIUM 6.5 2026-10-01

In JetBrains YouTrack before 2026.2.19422 iDOR in the issue activities API allowed reading restricted issues

CVE-2026-103492 MEDIUM 6.5 2026-10-01

In JetBrains YouTrack before 2026.2.19422 doS attack was possible via crafted PSD attachments

CVE-2026-103493 HIGH 8.1 2026-10-01

In JetBrains YouTrack before 2026.2.19422 stored XSS via Mermaid and LaTeX content was possible

CVE-2026-103494 MEDIUM 6.6 2026-10-01

In JetBrains YouTrack before 2026.2.19422 privilege escalation was possible via user group membership changes