Skip to main content

Vendor/product archive

jetbrains / pycharm CVEs

Beta · best-effort

9 CVEs tagged to jetbrains / pycharm2 Critical, 4 High, 2 Medium, 1 Low, 0 Unrated.

CVE-2026-49384

Published May 29, 2026

In JetBrains PyCharm before 2025.3.4 stored XSS in Jupyter notebook Markdown cells was possible

CVSS 6.1 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-25847

Published Feb 9, 2026

In JetBrains PyCharm before 2025.3.2 a DOM-based XSS on Jupyter viewer page was possible

CVSS 8.2 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2024-37051

Published Jun 10, 2024

GitHub access token could be exposed to third-party sites in JetBrains IDEs after version 2023.1 and less than: IntelliJ IDEA 2023.1.7, 2023.2.7, 2023.3.7, 2024.1.3, 2024.2 EAP3;…

CVSS 9.3 · Critical
evidence mentions
3
Buzz score
20.4

CVE-2022-29821

Published Apr 28, 2022

In JetBrains Rider before 2022.1 local code execution via links in ReSharper Quick Documentation was possible

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-30005

Published May 11, 2021

In JetBrains PyCharm before 2020.3.4, local code execution was possible because of insufficient checks when getting the project from VCS.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2019-14958

Published Oct 2, 2019

JetBrains PyCharm before 2019.2 was allocating a buffer of unknown size for one of the connection processes. In a very specific situation, it could lead to a remote invocation of…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-9 of 9 CVEsPage 1 of 1