Insecure API Permissions Lead to Data Deletion in JetBrains YouTrack
CVE-2024-48902
5.4MEDIUM
What is CVE-2024-48902?
In JetBrains YouTrack before 2024.3.46677 improper access control allowed users with project update permission to delete applications via API
Affected Version(s)
YouTrack 0 < 2024.3.46677