Improper Access Control in JetBrains YouTrack
CVE-2025-64687
5.4MEDIUM
What is CVE-2025-64687?
In JetBrains YouTrack, prior to version 2025.3.104432, there exists a vulnerability that facilitates improper access control. This flaw allows unauthorized users to modify the logic of the MCP tool, potentially leading to manipulation of project management functionalities. Users of the affected versions should take immediate action to apply necessary updates to safeguard their installations.
Affected Version(s)
YouTrack 0 < 2025.3.104432