Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://www.jetbrains.com/privacy-security/issues-fixed/ |
|
Fri, 17 Apr 2026 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Unauthorized Access to App Permissions in JetBrains YouTrack |
Thu, 26 Feb 2026 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:jetbrains:youtrack:*:*:*:*:*:*:*:* |
Thu, 26 Feb 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Jetbrains
Jetbrains youtrack |
|
| Vendors & Products |
Jetbrains
Jetbrains youtrack |
Wed, 25 Feb 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 25 Feb 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In JetBrains YouTrack before 2025.3.121962 apps were able to send requests to the app permissions endpoint | |
| Weaknesses | CWE-862 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: JetBrains
Published:
Updated: 2026-02-26T14:44:06.777Z
Reserved: 2026-02-25T12:35:11.990Z
Link: CVE-2026-28193
Updated: 2026-02-25T15:07:13.693Z
Status : Analyzed
Published: 2026-02-25T14:16:20.597
Modified: 2026-02-26T15:59:53.567
Link: CVE-2026-28193
No data.
OpenCVE Enrichment
Updated: 2026-04-17T15:30:06Z