Search CVE reports


Toggle filters

11 – 20 of 25 results


CVE-2019-10103

Low priority
Needs evaluation

JetBrains IntelliJ IDEA projects created using the Kotlin (JS Client/JVM Server) IDE Template were resolving Gradle artifacts using an http connection, potentially allowing an MITM attack. This issue, which was fixed in Kotlin...

2 affected packages

intellij-community-idea, intellij-idea

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
intellij-community-idea Needs evaluation Needs evaluation Needs evaluation Not in release Not in release
intellij-idea Not in release Not in release Not in release Not in release Not in release
Show less packages

CVE-2019-9873

Medium priority
Needs evaluation

In several versions of JetBrains IntelliJ IDEA Ultimate, creating Task Servers configurations leads to saving a cleartext unencrypted record of the server credentials in the IDE configuration files. The issue has been fixed in the...

1 affected package

intellij-community-idea

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
intellij-community-idea Needs evaluation Needs evaluation Needs evaluation Not in release Not in release
Show less packages

CVE-2019-9823

Medium priority
Needs evaluation

In several JetBrains IntelliJ IDEA versions, creating remote run configurations of JavaEE application servers leads to saving a cleartext record of the server credentials in the IDE configuration files. The issue has been fixed in...

1 affected package

intellij-community-idea

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
intellij-community-idea Needs evaluation Needs evaluation Needs evaluation Not in release Not in release
Show less packages

CVE-2019-9186

Medium priority
Needs evaluation

In several JetBrains IntelliJ IDEA versions, a Spring Boot run configuration with the default setting allowed remote attackers to execute code when the configuration is running, because a JMX server listens on all interfaces...

1 affected package

intellij-community-idea

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
intellij-community-idea Needs evaluation Needs evaluation Needs evaluation Not in release Not in release
Show less packages

CVE-2019-10104

Medium priority
Needs evaluation

In several JetBrains IntelliJ IDEA Ultimate versions, an Application Server run configuration (for Tomcat, Jetty, Resin, or CloudBees) with the default setting allowed a remote attacker to execute code when the configuration...

2 affected packages

intellij-community-idea, intellij-idea

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
intellij-community-idea Needs evaluation Needs evaluation Needs evaluation Not in release Not in release
intellij-idea Not in release Not in release Not in release Not in release Not in release
Show less packages

CVE-2015-1343

Low priority
Vulnerable

All versions of unity-scope-gdrive logs search terms to syslog.

1 affected package

unity-scope-gdrive

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
unity-scope-gdrive Not in release Not in release Not in release Not in release Not in release
Show less packages

CVE-2016-1573

High priority
Ignored

Versions of Unity8 before 8.11+16.04.20160122-0ubuntu1 file plugins/Dash/CardCreator.js will execute any code found in place of a fallback image supplied by a scope.

1 affected package

unity8

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
unity8
Show less packages

CVE-2015-1319

Medium priority

Some fixes available 2 of 3

The Unity Settings Daemon before 14.04.0+14.04.20150825-0ubuntu2 and 15.04.x before 15.04.1+15.04.20150408-0ubuntu1.2 does not properly detect if the screen is locked, which allows physically proximate attackers to mount removable...

1 affected package

unity-settings-daemon

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
unity-settings-daemon
Show less packages

CVE-2014-5195

Medium priority
Fixed

Unity before 7.2.3 and 7.3.x before 7.3.1, as used in Ubuntu, does not properly take focus of the keyboard when switching to the lock screen, which allows physically proximate attackers to bypass the lock screen by (1) leveraging...

1 affected package

unity

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
unity
Show less packages

CVE-2014-3204

Medium priority
Fixed

Unity before 7.2.1, as used in Ubuntu 14.04, does not properly handle keyboard shortcuts, which allows physically proximate attackers to bypass the lock screen and execute arbitrary commands, as demonstrated by right-clicking on...

1 affected package

unity

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
unity
Show less packages