VYPR

by Jetbrains

CVEs (48)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2024-223700.000.00Jan 9, 2024In JetBrains YouTrack before 2023.3.22666 stored XSS via markdown was possible
CVE-2023-508710.000.00Dec 15, 2023In JetBrains YouTrack before 2023.3.22268 authorization check for inline comments inside thread replies was missed
CVE-2023-380680.000.00Jul 12, 2023In JetBrains YouTrack before 2023.1.16597 captcha was not properly validated for Helpdesk forms
CVE-2023-350540.000.00Jun 12, 2023In JetBrains YouTrack before 2023.1.10518 stored XSS in a Markdown-rendering engine was possible
CVE-2023-350530.000.00Jun 12, 2023In JetBrains YouTrack before 2023.1.10518 a DoS attack was possible via Helpdesk forms
CVE-2022-286500.000.00Apr 5, 2022In JetBrains YouTrack before 2022.1.43700 it was possible to inject JavaScript into Markdown in the YouTrack Classic UI
CVE-2022-286490.000.00Apr 5, 2022In JetBrains YouTrack before 2022.1.43563 it was possible to include an iframe from a third-party domain in the issue description
CVE-2022-286480.000.00Apr 5, 2022In JetBrains YouTrack before 2022.1.43563 HTML code from the issue description was being rendered

Page 3 of 3