ZeroHour

CVE-2026-75044

CVSS 3.1
8.1 high
EPSS
<1%p14
Published
()
Modified
Description

In JetBrains YouTrack before 2025.3.156085, 2026.1.13914, 2026.2.18095 missing authorisation allowed an authenticated user to delete arbitrary entities via the mailbox endpoint

Vendors
jetbrains
Products
youtrack
Weakness
CWE-862
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H

In the news

No ingested article mentions this CVE yet.