Project Metadata Leak in JetBrains IntelliJ IDEA
CVE-2026-86505
3.3LOW
What is CVE-2026-86505?
A vulnerability exists in JetBrains IntelliJ IDEA versions prior to 2026.2.2, where a lack of proper project-trust checks enables the unintentional exposure of sensitive project metadata to the JetBrains Marketplace. This flaw may lead to unauthorized access to information that could be exploited, highlighting the importance of properly implementing security measures around project data and ensuring a secure development environment.
Affected Version(s)
IntelliJ IDEA 0 < 2026.2.2