Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown

CVE-2021-30482

Disclosure Date: May 11, 2021 (last updated February 22, 2025)
In JetBrains UpSource before 2020.1.1883, application passwords were not revoked correctly
Attacker Value
Unknown

CVE-2019-19704

Disclosure Date: August 08, 2020 (last updated November 28, 2024)
In JetBrains Upsource before 2020.1, information disclosure is possible because of an incorrect user matching algorithm.
Attacker Value
Unknown

CVE-2019-12156

Disclosure Date: October 02, 2019 (last updated November 27, 2024)
Server metadata could be exposed because one of the error messages reflected the whole response back to the client in JetBrains TeamCity versions before 2018.2.5 and UpSource versions before 2018.2 build 1293.
Attacker Value
Unknown

CVE-2019-12157

Disclosure Date: October 02, 2019 (last updated November 27, 2024)
In JetBrains UpSource versions before 2018.2 build 1293, there is credential disclosure via RPC commands.
Attacker Value
Unknown

CVE-2019-14961

Disclosure Date: October 01, 2019 (last updated November 27, 2024)
JetBrains Upsource before 2019.1.1412 was not properly escaping HTML tags in a code block comments, leading to XSS.