Security Vulnerability in YouTrack Allows Unauthorized Issue Restoration
CVE-2024-28229

6.5MEDIUM

Key Information:

Vendor
Jetbrains
Status
Vendor
CVE Published:
7 March 2024

Summary

A security vulnerability in JetBrains YouTrack prior to version 2024.1.25893 allows users without the necessary permissions to restore issues and articles. This flaw could lead to unauthorized access and manipulation of project management data, potentially compromising the integrity of the issues tracked by the application. Organizations using affected versions should prioritize updating their software to mitigate risks associated with this vulnerability.

Affected Version(s)

YouTrack 0 < 2024.1.25893

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.