📦 Intellij Idea

by Jetbrains

🔍 What is Intellij Idea?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-37051

CRITICAL CVSS 9.3 Jun 10, 2024

This vulnerability in JetBrains IDEs exposes GitHub access tokens to third-party websites, potentially allowing attackers to steal credentials and access private repositories. It affects users of JetB...

CVE-2021-45977

CRITICAL CVSS 9.8 Feb 25, 2022

This vulnerability in JetBrains IDEs used as Remote Development backends causes them to bind to all network interfaces (0.0.0.0) instead of localhost only, exposing development environments to unautho...

CVE-2022-24345

HIGH CVSS 7.8 Feb 25, 2022

This vulnerability in JetBrains IntelliJ IDEA allows local code execution without user permission when opening a project. Attackers could execute arbitrary code on the system by tricking users into op...

CVE-2021-29263

HIGH CVSS 7.8 May 11, 2021

This vulnerability in JetBrains IntelliJ IDEA allows local code execution due to insufficient validation when retrieving projects from version control systems (VCS). Attackers could exploit this to ex...

CVE-2021-30006

HIGH CVSS 7.5 May 11, 2021

This CVE describes an XML External Entity (XXE) vulnerability in IntelliJ IDEA that allows attackers to read arbitrary files from the system. It affects users running IntelliJ IDEA versions before 202...

CVE-2021-25758

HIGH CVSS 7.8 Feb 3, 2021

This vulnerability in JetBrains IntelliJ IDEA allows local code execution through insecure deserialization of workspace models. Attackers could exploit this to run arbitrary code on systems running vu...

CVE-2025-68269

MEDIUM CVSS 5.4 Dec 16, 2025

This vulnerability in JetBrains IntelliJ IDEA allows attackers to trick users into opening untrusted remote projects over SSH without proper confirmation dialogs. It affects developers using IntelliJ ...

CVE-2025-57727

MEDIUM CVSS 4.7 Aug 20, 2025

This vulnerability in JetBrains IntelliJ IDEA allows attackers to potentially access sensitive credentials through remote references. It affects users running IntelliJ IDEA versions before 2025.2 who ...

CVE-2025-57728

MEDIUM CVSS 6.5 Aug 20, 2025

This vulnerability in JetBrains IntelliJ IDEA allows Code With Me guests to discover hidden files on the host system due to improper access control. It affects developers using IntelliJ IDEA's collabo...

CVE-2025-57729

MEDIUM CVSS 6.5 Aug 20, 2025

This vulnerability in JetBrains IntelliJ IDEA allows unexpected plugin startup due to automatic Language Server Protocol (LSP) server activation, potentially enabling malicious plugins to execute code...

CVE-2025-57730

MEDIUM CVSS 5.2 Aug 20, 2025

This vulnerability allows HTML injection through JetBrains IntelliJ IDEA's Remote Development feature, enabling attackers to inject malicious HTML content that could lead to cross-site scripting (XSS)...

CVE-2022-48433

MEDIUM CVSS 6.1 Mar 29, 2023

This vulnerability allows attackers to obtain NTLM password hashes through the built-in web server API in JetBrains IntelliJ IDEA. It affects users running vulnerable versions of IntelliJ IDEA who hav...

CVE-2022-48431

MEDIUM CVSS 4.5 Mar 29, 2023

This vulnerability in JetBrains IntelliJ IDEA allows Gradle and Maven projects to be imported without requiring the 'Trust Project' confirmation dialog. This affects users of IntelliJ IDEA versions be...