Skip to main content

Vendor/product archive

jetbrains / toolbox CVEs

Beta · best-effort

11 CVEs tagged to jetbrains / toolbox1 Critical, 4 High, 6 Medium, 0 Low, 0 Unrated.

CVE-2025-43014

Published Apr 17, 2025

In JetBrains Toolbox App before 2.6 the SSH plugin established connections without sufficient user confirmation

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-43013

Published Apr 17, 2025

In JetBrains Toolbox App before 2.6 unencrypted credential transmission during SSH authentication was possible

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-43012

Published Apr 17, 2025

In JetBrains Toolbox App before 2.6 command injection in SSH plugin was possible

CVSS 8.3 · High
Vendor/product tagsBeta · best-effort

CVE-2025-42921

Published Apr 17, 2025

In JetBrains Toolbox App before 2.6 host key verification was missing in SSH plugin

CVSS 4.2 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-24943

Published Feb 6, 2024

In JetBrains Toolbox App before 2.2 a DoS attack was possible via a malicious SVG image

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-25207

Published Nov 16, 2020

JetBrains ToolBox before version 1.18 is vulnerable to Remote Code Execution via a browser protocol handler.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2020-25013

Published Nov 16, 2020

JetBrains ToolBox before version 1.18 is vulnerable to a Denial of Service attack via a browser protocol handler.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2020-15827

Published Aug 8, 2020

In JetBrains ToolBox version 1.17 before 1.17.6856, the set of signature verifications omitted the jetbrains-toolbox.exe file.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2019-18368

Published Oct 31, 2019

In JetBrains Toolbox App before 1.15.5666 for Windows, privilege escalation was possible.

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2019-14959

Published Oct 2, 2019

JetBrains Toolbox before 1.15.5605 was resolving an internal URL via a cleartext http connection.

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-11 of 11 CVEsPage 1 of 1