Get a Pentest and security assessment of your IT network.

2021-current

CVE-2020-24618 – In JetBrains YouTrack versions before 2020.3.4313, 2020.2.11008, 2020.1.1

In JetBrains YouTrack versions before 2020.3.4313, 2020.2.11008, 2020.1.11011, 2019.1.65514, 2019.2.65515, and 2019.3.65516, an attacker can retrieve an issue description without appropriate access.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-24618

Reference (s):

  • https://blog.jetbrains.com/2020/11/16/jetbrains-security-bulletin-q3-2020/
  • https://blog.jetbrains.com
  • https://youtrack.jetbrains.com/issue/JT-59265
Related posts
2021-current

CVE-2004-1715 - Directory traversal vulnerability in MIMEsweeper for Web before 5.0.4 all

2021-current

CVE-2014-8508 - Cross-site scripting (XSS) vulnerability in s_network.asp in the Denon AV

2021-current

CVE-2020-0297 - In devicepolicy service, there is a possible permission bypass due to an

2021-current

CVE-2020-14315 - A memory corruption vulnerability is present in bspatch as shipped in Col