CVE-2026-103492
Received Received - Intake

DoS Attack via Malicious PSD Attachments in JetBrains YouTrack

Vulnerability report for CVE-2026-103492, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-10-01

Last updated on: 2026-10-01

Assigner: JetBrains s.r.o.

Description

In JetBrains YouTrack before 2026.2.19422 doS attack was possible via crafted PSD attachments

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-10-01
Last Modified
2026-10-01
Generated
2026-10-01
AI Q&A
2026-10-01
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
jetbrains youtrack to 2026.2.19422 (exc)

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-835 The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

A denial-of-service (DoS) attack was possible in JetBrains YouTrack before version 2026.2.19422 due to crafted PSD attachments. This means an attacker could exploit this vulnerability to make the system unavailable or unresponsive by sending specially designed PSD files.

Impact Analysis

If you use JetBrains YouTrack before version 2026.2.19422, an attacker could disrupt your service by sending malicious PSD attachments, causing downtime or reduced performance. This could affect productivity and user access to the system.

Compliance Impact

The vulnerability allows a denial-of-service attack via crafted PSD attachments in JetBrains YouTrack before 2026.2.19422. This could impact compliance by disrupting availability of critical systems, potentially violating availability requirements in GDPR and HIPAA.

Mitigation Strategies

Update JetBrains YouTrack to version 2026.2.19422 or later to address the DoS vulnerability in PSD attachments.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-103492. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart