Plaintext Git Credential Exposure in JetBrains IntelliJ IDEA
CVE-2026-75057

6.2MEDIUM

Key Information:

Vendor

Jetbrains

Vendor
CVE Published:
17 August 2026

What is CVE-2026-75057?

In versions of JetBrains IntelliJ IDEA prior to 2026.1.5, git credentials were inadvertently logged in plaintext format within the IDE's log files. This vulnerable behavior poses a significant security risk, as sensitive authentication information could potentially be accessed by unauthorized users or processes. Users are recommended to update to the latest version to mitigate this issue and secure their credentials.

Affected Version(s)

IntelliJ IDEA 0 < 2026.1.5

References

CVSS V3.1

Score:
6.2
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.