CVE-2025-58334
Unknown
Unknown - Not Provided
BaseFortify
Publication date: 2025-08-28
Last updated on: 2025-10-14
Assigner: JetBrains s.r.o.
Description
Description
In JetBrains IDE Services before 2025.5.0.1086,
2025.4.2.2164 users without appropriate permissions could assign high-privileged role for themselves
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| jetbrains | ide_services | to 2025.4.2.2164 (exc) |
| jetbrains | ide_services | From 2025.5 (inc) to 2025.5.0.1086 (exc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-862 | The product does not perform an authorization check when an actor attempts to access a resource or perform an action. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability in JetBrains IDE Services before version 2025.5.0.1086 and 2025.4.2.2164 allows users who do not have the appropriate permissions to assign themselves a high-privileged role.
How can this vulnerability impact me? :
The vulnerability can lead to unauthorized privilege escalation, allowing users without proper permissions to gain high-privileged roles, which can compromise the security and integrity of the system.
Ask Our AI Assistant
Need more information? Ask your question to get an AI reply (Powered by our expertise)
0/70