VYPR
Vendor
Products
7
CVEs
233
Across products
237
Status
Private

Products

7

Recent CVEs

233
CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2024-27199Hig0.737.30.91KEVMar 4, 2024In JetBrains TeamCity before 2023.11.4 path traversal allowing to perform limited admin actions was possible
CVE-2026-41882Hig0.487.40.00Apr 30, 2026In JetBrains IntelliJ IDEA before 2024.3.7.1, 2025.1.7.1, 2025.2.6.2, 2025.3.4.1, 2026.1.1 reading arbitrary local files was possible via built-in web server
CVE-2026-33392Hig0.477.20.00Apr 17, 2026In JetBrains YouTrack before 2025.3.131383 high privileged user can achieve RCE via sandbox bypass
CVE-2026-32229Med0.446.80.00Mar 11, 2026In JetBrains Hub before 2026.1 possible on sign-in account mismatch with non-SSO auth and 2FA disabled
CVE-2026-32745Med0.416.30.00Mar 13, 2026In JetBrains Datalore before 2026.1 session hijacking was possible due to missing secure attribute for cookie settings
CVE-2026-41153Med0.385.80.00Apr 17, 2026In JetBrains Junie before 252.549.29 command execution was possible via malicious project file
CVE-2024-271980.280.93KEVMar 4, 2024In JetBrains TeamCity before 2023.11.4 authentication bypass allowing to perform admin actions was possible
CVE-2023-427930.280.93KEVSep 19, 2023In JetBrains TeamCity before 2023.05.4 authentication bypass leading to RCE on TeamCity Server was possible
CVE-2024-239170.060.73Feb 6, 2024In JetBrains TeamCity before 2023.11.3 authentication bypass leading to RCE was possible
CVE-2024-438100.040.48Aug 16, 2024In JetBrains TeamCity before 2024.07.1 reflected XSS was possible in the AWS Core plugin
CVE-2024-418250.040.56Jul 22, 2024In JetBrains TeamCity before 2024.07 stored XSS was possible on the Code Inspection tab
CVE-2024-363740.040.46May 29, 2024In JetBrains TeamCity before 2024.03.2 stored XSS via build step settings was possible
CVE-2024-363730.040.56May 29, 2024In JetBrains TeamCity before 2024.03.2 several stored XSS in untrusted builds settings were possible
CVE-2024-363710.040.55May 29, 2024In JetBrains TeamCity before 2023.05.6, 2023.11.5 stored XSS in Commit status publisher was possible
CVE-2024-363700.040.46May 29, 2024In JetBrains TeamCity before 2022.04.7, 2022.10.6, 2023.05.6, 2023.11.5 stored XSS via OAuth connection settings was possible
CVE-2024-363690.040.56May 29, 2024In JetBrains TeamCity before 2022.04.7, 2022.10.6, 2023.05.6, 2023.11.5 stored XSS via issue tracker integration was possible
CVE-2024-363630.040.56May 29, 2024In JetBrains TeamCity before 2022.04.7, 2022.10.6, 2023.05.6, 2023.11.5 several Stored XSS in code inspection reports were possible
CVE-2024-353020.040.47May 16, 2024In JetBrains TeamCity before 2023.11 stored XSS during restore from backup was possible
CVE-2024-563550.030.34Dec 20, 2024In JetBrains TeamCity before 2024.12 missing Content-Type header in RemoteBuildLogController response could lead to XSS
CVE-2024-563520.030.34Dec 20, 2024In JetBrains TeamCity before 2024.12 stored XSS was possible via image name on the agent details page