Show filters
100 Total Results
Displaying 71-80 of 100
Sort by:
Attacker Value
Unknown

CVE-2020-25209

Disclosure Date: November 16, 2020 (last updated November 28, 2024)
In JetBrains YouTrack before 2020.3.6638, improper access control for some subresources leads to information disclosure via the REST API.
Attacker Value
Unknown

CVE-2020-25210

Disclosure Date: November 16, 2020 (last updated November 28, 2024)
In JetBrains YouTrack before 2020.3.7955, an attacker could access workflow rules without appropriate access grants.
Attacker Value
Unknown

CVE-2020-24366

Disclosure Date: November 16, 2020 (last updated November 28, 2024)
Sensitive information could be disclosed in the JetBrains YouTrack application before 2020.2.0 for Android via application backups.
Attacker Value
Unknown

CVE-2020-27624

Disclosure Date: November 16, 2020 (last updated February 22, 2025)
JetBrains YouTrack before 2020.3.888 was vulnerable to SSRF.
Attacker Value
Unknown

CVE-2020-15822

Disclosure Date: October 19, 2020 (last updated February 22, 2025)
In JetBrains YouTrack before 2020.2.10514, SSRF is possible because URL filtering can be escaped.
Attacker Value
Unknown

CVE-2020-24618

Disclosure Date: August 27, 2020 (last updated November 28, 2024)
In JetBrains YouTrack versions before 2020.3.4313, 2020.2.11008, 2020.1.11011, 2019.1.65514, 2019.2.65515, and 2019.3.65516, an attacker can retrieve an issue description without appropriate access.
Attacker Value
Unknown

CVE-2020-15823

Disclosure Date: August 08, 2020 (last updated February 21, 2025)
JetBrains YouTrack before 2020.2.8873 is vulnerable to SSRF in the Workflow component.
Attacker Value
Unknown

CVE-2020-15821

Disclosure Date: August 08, 2020 (last updated February 21, 2025)
In JetBrains YouTrack before 2020.2.6881, a user without permission is able to create an article draft.
Attacker Value
Unknown

CVE-2020-15819

Disclosure Date: August 08, 2020 (last updated February 21, 2025)
JetBrains YouTrack before 2020.2.10643 was vulnerable to SSRF that allowed scanning internal ports.
Attacker Value
Unknown

CVE-2020-15820

Disclosure Date: August 08, 2020 (last updated November 28, 2024)
In JetBrains YouTrack before 2020.2.6881, the markdown parser could disclose hidden file existence.