CVE-2025-64688

In JetBrains YouTrack before 2025.3.104432 missing VCS URL validation allowed delegation to unauthorized repositories from the Junie widget
Configurations

No configuration.

History

10 Nov 2025, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-11-10 14:15

Updated : 2025-11-10 14:15


NVD link : CVE-2025-64688

Mitre link : CVE-2025-64688

CVE.ORG link : CVE-2025-64688


JSON object : View

Products Affected

No product.

CWE
CWE-639

Authorization Bypass Through User-Controlled Key