Local Code Execution Vulnerability in JetBrains Rider by JetBrains
CVE-2022-37396
4.1MEDIUM
Summary
A local code execution vulnerability in JetBrains Rider prior to version 2022.2 allows unauthorized bypass of the Trust and Open Project dialog. This flaw can potentially be exploited to execute arbitrary code on the local system, leading to significant security risks for developers using the affected versions.
Affected Version(s)
Rider 2022.2
References
CVSS V3.1
Score:
4.1
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved