9.1

CVE-2026-75045

In JetBrains YouTrack before 2025.3.156085, 
2026.1.13913, 
2026.2.18112 an unauthenticated attacker could download database backups via shared draft signature
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
JetBrains ≫ YouTrack Version < 2025.3.156085
JetBrains ≫ YouTrack Version >= 2026.1 < 2026.1.13913
JetBrains ≫ YouTrack Version >= 2026.2 < 2026.2.18112
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.3% 0.224
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
cve@jetbrains.com 9.1 3.9 5.2
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
CWE-288 Authentication Bypass Using an Alternate Path or Channel

The product requires authentication, but the product has an alternate path or channel that does not require authentication.

https://www.jetbrains.com/privacy-security/issues-fixed/
Vendor Advisory