Session Hijacking Vulnerability in JetBrains Datalore
CVE-2026-32745
6.3MEDIUM
What is CVE-2026-32745?
JetBrains Datalore versions before 2026.1 are susceptible to session hijacking due to inadequate cookie security settings. The vulnerability arises from the absence of the secure attribute in cookie configurations, potentially allowing attackers to intercept session cookies. This could enable unauthorized access to user accounts and sensitive information. Users are urged to update to the latest version to mitigate this risk.
Affected Version(s)
Datalore 0 < 2026.1