Race Condition Vulnerability in JetBrains Hub Affects User Limit Enforcement
CVE-2025-64682

2.7LOW

Key Information:

Vendor

Jetbrains

Status
Vendor
CVE Published:
10 November 2025

What is CVE-2025-64682?

In JetBrains Hub prior to version 2025.3.104432, a race condition vulnerability has been identified that permits the bypassing of agent-user limits. This flaw can potentially allow unauthorized access to functionality, compromising the intended restrictions set for user operations. Mitigation is essential to prevent exploitation of this vulnerability.

Affected Version(s)

Hub 0 < 2025.3.104432

References

CVSS V3.1

Score:
2.7
Severity:
LOW
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-64682 : Race Condition Vulnerability in JetBrains Hub Affects User Limit Enforcement