JetBrains
- 19
- vulnerabilities tracked
- 1
- under active exploitation
- 4
- critical
- 5 August 2026
- latest publication
cve
Vulnerability watch
idvulnerabilityseveritypublished
CVE-2026-63077In JetBrains TeamCity before 2026.1.3, 2025.11.7 unauthenticated remote code execution was possible via the agent polling protocolJetBrains TeamCity Critical CVSS 9.8 CVE-2026-64802In JetBrains GoLand before 2026.2 arbitrary code execution was possible before granting project trust in the Go Modules integrationJetbrains Goland High CVSS 7.8 CVE-2026-64803In JetBrains GoLand before 2026.2 arbitrary code execution was possible before granting project trust via the configured Go SDKJetbrains Goland High CVSS 7.8 CVE-2026-64804In JetBrains WebStorm before 2026.2 arbitrary code execution was possible before granting project trust via project-local linter toolingJetbrains Webstorm High CVSS 8.4 CVE-2026-64805In JetBrains WebStorm before 2026.2 arbitrary code execution was possible before granting project trust via project-local package-manager toolingJetbrains Webstorm High CVSS 8.4 CVE-2026-64806In JetBrains WebStorm before 2026.2 arbitrary code execution was possible before granting project trust via the configured Node.js interpreterJetbrains Webstorm High CVSS 8.4 CVE-2026-64807In JetBrains WebStorm before 2026.2 arbitrary code execution was possible via a project-supplied linter configurationJetbrains Webstorm High CVSS 7.8 CVE-2026-64808In JetBrains PhpStorm before 2026.2 arbitrary code execution was possible before granting project trust via project toolingJetbrains Phpstorm High CVSS 8.4 CVE-2026-64809In JetBrains PhpStorm before 2026.2 arbitrary code execution was possible before granting project trust via the configured interpreterJetbrains Phpstorm High CVSS 8.4 CVE-2026-64811In JetBrains IntelliJ IDEA before 2026.2 arbitrary code execution was possible before granting project trust via development container configurationJetbrains Intellij Idea High CVSS 7.8 CVE-2026-64812In JetBrains IntelliJ IDEA before 2026.2 unauthorized input injection was possible in a Remote Development sessionJetbrains Intellij Idea Critical CVSS 10 CVE-2026-64813In JetBrains IntelliJ IDEA before 2026.2 unauthorized settings modification was possible in a Remote Development sessionJetbrains Intellij Idea Critical CVSS 10 CVE-2026-64814In JetBrains IntelliJ IDEA before 2026.2 unauthorized file access was possible in a Remote Development sessionJetbrains Intellij Idea High CVSS 8.6 CVE-2026-64815In JetBrains IntelliJ IDEA before 2026.2 arbitrary code injection was possible via UI Designer form filesJetbrains Intellij Idea High CVSS 8.1 CVE-2026-65906In JetBrains TeamCity before 2026.1.2, 2025.11.6 сode execution via Kotlin DSL sandbox escape was possibleJetbrains Teamcity High CVSS 8.8 CVE-2026-65908In JetBrains PyCharm before 2026.1.4, 2026.2 arbitrary code execution via malicious Python executable was possible on untrusted project openJetbrains Pycharm High CVSS 8.6 CVE-2026-59792In JetBrains IntelliJ IDEA before 2026.1.4,
2026.2 code execution via path traversal in project workspace ID handling was possibleJetbrains Intellij Idea Critical CVSS 9.8 CVE-2026-59793In JetBrains TeamCity before 2026.1.2 arbitrary file access was possible via the Perforce VCS integrationJetbrains Teamcity High CVSS 8.8 CVE-2026-59796In JetBrains TeamCity before 2026.1.2 pipeline modification was possible due to improper permission checksJetbrains Teamcity High CVSS 8.1