Skip to main content

Vendor/product archive

jetbrains / phpstorm CVEs

Beta · best-effort

6 CVEs tagged to jetbrains / phpstorm2 Critical, 2 High, 1 Medium, 1 Low, 0 Unrated.

CVE-2026-64809

Published Jul 23, 2026

In JetBrains PhpStorm before 2026.2 arbitrary code execution was possible before granting project trust via the configured interpreter

CVSS 8.4 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-64808

Published Jul 23, 2026

In JetBrains PhpStorm before 2026.2 arbitrary code execution was possible before granting project trust via project tooling

CVSS 8.4 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2024-37051

Published Jun 10, 2024

GitHub access token could be exposed to third-party sites in JetBrains IDEs after version 2023.1 and less than: IntelliJ IDEA 2023.1.7, 2023.2.7, 2023.3.7, 2024.1.3, 2024.2 EAP3;…

CVSS 9.3 · Critical
evidence mentions
3
Buzz score
20.4

CVE-2022-48435

Published Apr 4, 2023

In JetBrains PhpStorm before 2023.1 source code could be logged in the local idea.log file

CVSS 3.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2021-25764

Published Mar 18, 2021

In JetBrains PhpStorm before 2020.3, source code could be added to debug logs.

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-6 of 6 CVEsPage 1 of 1