In JetBrains IntelliJ IDEA before 2026.1.1 command injection was possible via filename completion
| Vendor | Product | Versions |
|---|---|---|
| jetbrains | intellij_idea | 0 |
Downstream vendors/products affected by this vulnerability
| Vendor | Product | Source | Confidence |
|---|---|---|---|
| jetbrains | intellij idea | cert_advisory | 90% |
Updated severity to CRITICAL and affected versions to include 2026.1.0.
Initial creation