Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 9.8

    CRITICAL
    CVE-2021-43202

    In JetBrains TeamCity before 2021.1.3, the X-Frame-Options header is missing in some cases.... Read more

    Affected Products : teamcity
    • Published: Nov. 30, 2021
    • Modified: Nov. 21, 2024
  • 5.3

    MEDIUM
    CVE-2021-43201

    In JetBrains TeamCity before 2021.1.3, a newly created project could take settings from an already deleted project.... Read more

    Affected Products : teamcity
    • Published: Nov. 09, 2021
    • Modified: Nov. 21, 2024
  • 9.8

    CRITICAL
    CVE-2021-43200

    In JetBrains TeamCity before 2021.1.2, permission checks in the Agent Push functionality were insufficient.... Read more

    Affected Products : teamcity
    • Published: Nov. 09, 2021
    • Modified: Nov. 21, 2024
  • 5.3

    MEDIUM
    CVE-2021-43199

    In JetBrains TeamCity before 2021.1.2, permission checks in the Create Patch functionality are insufficient.... Read more

    Affected Products : teamcity
    • Published: Nov. 09, 2021
    • Modified: Nov. 21, 2024
  • 5.4

    MEDIUM
    CVE-2021-43198

    In JetBrains TeamCity before 2021.1.2, stored XSS is possible.... Read more

    Affected Products : teamcity
    • Published: Nov. 09, 2021
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2021-43197

    In JetBrains TeamCity before 2021.1.2, email notifications could include unescaped HTML for XSS.... Read more

    Affected Products : teamcity
    • Published: Nov. 09, 2021
    • Modified: Nov. 21, 2024
  • 7.5

    HIGH
    CVE-2021-43196

    In JetBrains TeamCity before 2021.1, information disclosure via the Docker Registry connection dialog is possible.... Read more

    Affected Products : teamcity
    • Published: Nov. 09, 2021
    • Modified: Nov. 21, 2024
  • 5.3

    MEDIUM
    CVE-2021-43195

    In JetBrains TeamCity before 2021.1.2, some HTTP security headers were missing.... Read more

    Affected Products : teamcity
    • Published: Nov. 09, 2021
    • Modified: Nov. 21, 2024
  • 5.3

    MEDIUM
    CVE-2021-43194

    In JetBrains TeamCity before 2021.1.2, user enumeration was possible.... Read more

    Affected Products : teamcity
    • Published: Nov. 09, 2021
    • Modified: Nov. 21, 2024
  • 9.8

    CRITICAL
    CVE-2021-43193

    In JetBrains TeamCity before 2021.1.2, remote code execution via the agent push functionality is possible.... Read more

    Affected Products : teamcity
    • Published: Nov. 09, 2021
    • Modified: Nov. 21, 2024
  • 5.3

    MEDIUM
    CVE-2021-43192

    In JetBrains YouTrack Mobile before 2021.2, iOS URL scheme hijacking is possible.... Read more

    Affected Products : iphone_os youtrack_mobile
    • Published: Nov. 09, 2021
    • Modified: Nov. 21, 2024
  • 5.3

    MEDIUM
    CVE-2021-43191

    JetBrains YouTrack Mobile before 2021.2, is missing the security screen on Android and iOS.... Read more

    Affected Products : android iphone_os youtrack_mobile
    • Published: Nov. 09, 2021
    • Modified: Nov. 21, 2024
  • 5.3

    MEDIUM
    CVE-2021-43190

    In JetBrains YouTrack Mobile before 2021.2, task hijacking on Android is possible.... Read more

    Affected Products : android youtrack_mobile
    • Published: Nov. 09, 2021
    • Modified: Nov. 21, 2024
  • 7.5

    HIGH
    CVE-2021-43189

    In JetBrains YouTrack Mobile before 2021.2, access token protection on Android is incomplete.... Read more

    Affected Products : android youtrack_mobile
    • Published: Nov. 09, 2021
    • Modified: Nov. 21, 2024
  • 7.5

    HIGH
    CVE-2021-43188

    In JetBrains YouTrack Mobile before 2021.2, access token protection on iOS is incomplete.... Read more

    Affected Products : iphone_os youtrack_mobile
    • Published: Nov. 09, 2021
    • Modified: Nov. 21, 2024
  • 5.3

    MEDIUM
    CVE-2021-43187

    In JetBrains YouTrack Mobile before 2021.2, the client-side cache on iOS could contain sensitive information.... Read more

    Affected Products : iphone_os youtrack_mobile
    • Published: Nov. 09, 2021
    • Modified: Nov. 21, 2024
  • 5.4

    MEDIUM
    CVE-2021-43186

    JetBrains YouTrack before 2021.3.24402 is vulnerable to stored XSS.... Read more

    Affected Products : youtrack
    • Published: Nov. 09, 2021
    • Modified: Nov. 21, 2024
  • 9.8

    CRITICAL
    CVE-2021-43185

    JetBrains YouTrack before 2021.3.23639 is vulnerable to Host header injection.... Read more

    Affected Products : youtrack
    • Published: Nov. 09, 2021
    • Modified: Nov. 21, 2024
  • 5.4

    MEDIUM
    CVE-2021-43184

    In JetBrains YouTrack before 2021.3.21051, stored XSS is possible.... Read more

    Affected Products : youtrack
    • Published: Nov. 09, 2021
    • Modified: Nov. 21, 2024
  • 9.8

    CRITICAL
    CVE-2021-43183

    In JetBrains Hub before 2021.1.13690, the authentication throttling mechanism could be bypassed.... Read more

    Affected Products : hub
    • Published: Nov. 09, 2021
    • Modified: Nov. 21, 2024
Showing 20 of 293582 Results