Home
MEDIUM: 6.3 CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:H/I:L/A:NDefault status
unaffected
Any version before 2026.1
affected
Description
In JetBrains Datalore before 2026.1 session hijacking was possible due to missing secure attribute for cookie settings
Problem types
Product status
Any version before 2026.1
References
www.jetbrains.com/privacy-security/issues-fixed/