Email Spoofing Vulnerability in JetBrains YouTrack
CVE-2025-53959

7.6HIGH

Key Information:

Vendor

Jetbrains

Status
Vendor
CVE Published:
15 July 2025

What is CVE-2025-53959?

A vulnerability in JetBrains YouTrack allows for email spoofing through an administrative API in versions prior to 2025.2.86069, 2024.3.85077, and 2025.1.86199. This issue could enable attackers to send deceptive emails, potentially compromising user trust and security. It's crucial for users to update their installations to mitigate the risk and secure their communications.

Affected Version(s)

YouTrack 0 < 2025.2.86069, 2024.3.85077, 2025.1.86199

References

CVSS V3.1

Score:
7.6
Severity:
HIGH
Confidentiality:
High
Integrity:
Low
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-53959 : Email Spoofing Vulnerability in JetBrains YouTrack