Product:

Youtrack

(Jetbrains)
Repositories

Unknown:

This might be proprietary software.

#Vulnerabilities 83
Date Id Summary Products Score Patch Annotated
2024-03-07 CVE-2024-28228 In JetBrains YouTrack before 2024.1.25893 creation comments on behalf of an arbitrary user in HelpDesk was possible Youtrack 5.3
2024-03-07 CVE-2024-28229 In JetBrains YouTrack before 2024.1.25893 user without appropriate permissions could restore issues and articles Youtrack 6.5
2024-03-07 CVE-2024-28230 In JetBrains YouTrack before 2024.1.25893 attaching/detaching workflow to a project was possible without project admin permissions Youtrack 6.5
2020-01-30 CVE-2020-7912 In JetBrains YouTrack before 2019.2.59309, SMTP/Jabber settings could be accessed using backups. Youtrack 5.3
2020-01-30 CVE-2020-7913 JetBrains YouTrack 2019.2 before 2019.2.59309 was vulnerable to XSS via an issue description. Youtrack 6.1
2020-08-08 CVE-2020-15817 In JetBrains YouTrack before 2020.1.1331, an external user could execute commands against arbitrary issues. Youtrack 8.8
2020-08-08 CVE-2020-15818 In JetBrains YouTrack before 2020.2.8527, the subtasks workflow could disclose issue existence. Youtrack 5.3
2020-08-08 CVE-2020-15819 JetBrains YouTrack before 2020.2.10643 was vulnerable to SSRF that allowed scanning internal ports. Youtrack 5.3
2020-08-08 CVE-2020-15820 In JetBrains YouTrack before 2020.2.6881, the markdown parser could disclose hidden file existence. Youtrack 5.3
2020-08-08 CVE-2020-15821 In JetBrains YouTrack before 2020.2.6881, a user without permission is able to create an article draft. Youtrack 6.5