Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
4358 articles · 196331 vulns · 36/41 feeds (7d)
← Back to list
6.3
CVE-2026-75054PATCHED
jetbrains · intellij idea

CVE-2026-75054: In JetBrains IntelliJ IDEA before 2026.2.1 sSRF was possible via the OpenAPI preview proxy in untrusted projects

Description

In JetBrains IntelliJ IDEA before 2026.2.1 sSRF was possible via the OpenAPI preview proxy in untrusted projects

Affected Products

VendorProductVersions
jetbrainsintellij idea0

Also Affects

Downstream vendors/products affected by this vulnerability

VendorProductSourceConfidence
jetbrainsintellij ideacert_advisory90%

References

  • https://www.jetbrains.com/privacy-security/issues-fixed/

Related News (2 articles)

Tier B
BSI Advisories5d ago
[NEU] [mittel] JetBrains IntelliJ IDEA: Mehrere Schwachstellen
→ No new info (linked only)
Tier C
VulDB6d ago
CVE-2026-75054 | JetBrains IntelliJ IDEA up to 2026.2.0 OpenAPI preview proxy server-side request forgery
→ No new info (linked only)
CVSS 3.16.3 MEDIUM
VectorCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:N/A:N
CISA KEV❌ No
Actively exploited❌ No
Patch available
2026.2.1
CWECWE-918
PublishedAug 17, 2026
Trending Score17
Source articles2
Independent2
Info Completeness0/14
Missing: cve_id, title, description, vendor, product, versions, cvss, epss, cwe, kev, exploit, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

HIGHCVE-2026-75060
CVE-2026-75060: In JetBrains PyCharm before 2026.2.1 code execution was possible via unauthenticated Jupyter MCP tools
Trending: 22
HIGHCVE-2026-75056
CVE-2026-75056: In JetBrains IntelliJ IDEA before 2026.2.1 rCE via Markdown export tool was possible
Trending: 22
CRITICALCVE-2026-75045
CVE-2026-75045: In JetBrains YouTrack before 2025.3.156085, 2026.1.13913, 2026.2.18112 an unauthenticated attacker could download data
Trending: 22
CRITICALCVE-2026-63077EXPKEV
CVE-2026-63077: In JetBrains TeamCity before 2026.1.3, 2025.11.7 unauthenticated remote code execution was possible via the agent pollin
Trending: 22
MEDIUMCVE-2026-75059
CVE-2026-75059: In JetBrains PyCharm before 2026.2.1 code execution via Quick Documentation was possible
Trending: 20

Pin to Dashboard

Verification

State: unverified
Confidence: 0%

Vulnerability Timeline

CVE Published
Aug 17, 2026
Discovered by ZDM
Aug 17, 2026
Patch Available
Aug 17, 2026