Skip to main content

Vendor/product archive

jetbrains / upsource CVEs

Beta · best-effort

5 CVEs tagged to jetbrains / upsource1 Critical, 2 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2021-30482

Published May 11, 2021

In JetBrains UpSource before 2020.1.1883, application passwords were not revoked correctly

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2019-19704

Published Aug 8, 2020

In JetBrains Upsource before 2020.1, information disclosure is possible because of an incorrect user matching algorithm.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2019-12156

Published Oct 2, 2019

Server metadata could be exposed because one of the error messages reflected the whole response back to the client in JetBrains TeamCity versions before 2018.2.5 and UpSource vers…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-14961

Published Oct 1, 2019

JetBrains Upsource before 2019.1.1412 was not properly escaping HTML tags in a code block comments, leading to XSS.

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1