Home

Description

In JetBrains YouTrack before 2025.3.131383 high privileged user can achieve RCE via sandbox bypass

PUBLISHED Reserved 2026-03-19 | Published 2026-04-17 | Updated 2026-04-18 | Assigner JetBrains




HIGH: 7.2CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Problem types

CWE-1336

Product status

Default status
unaffected

Any version before 2025.3.131383
affected

References

www.jetbrains.com/privacy-security/issues-fixed/

cve.org (CVE-2026-33392)

nvd.nist.gov (CVE-2026-33392)

Download JSON