Home
MEDIUM: 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:NDefault status
unaffected
Any version before 2025.2.86935, 2025.2.87167, 2025.3.87341, 2025.3.87344
affected
Description
In JetBrains YouTrack before 2025.2.86935, 2025.2.87167, 2025.3.87341, 2025.3.87344 improper iframe configuration in widget sandbox allows popups to bypass security restrictions
Problem types
Product status
Any version before 2025.2.86935, 2025.2.87167, 2025.3.87341, 2025.3.87344
References
www.jetbrains.com/privacy-security/issues-fixed/