Sensitive Data Exposure in JetBrains GoLand Affects Configuration Security
CVE-2026-64800

3.5LOW

Key Information:

Vendor

Jetbrains

Status
Vendor
CVE Published:
23 July 2026

What is CVE-2026-64800?

In JetBrains GoLand prior to version 2026.2, sensitive configuration values are inadvertently logged by default. This sensitive information stored in log files may be exploited by unauthorized users, posing a risk to data confidentiality and user privacy. It is crucial for users to understand the implications of this exposure and take appropriate measures to secure their configurations and log management practices.

Affected Version(s)

GoLand 0 < 2026.2

References

CVSS V3.1

Score:
3.5
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.