CVE-2026-57921
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
26/06/2026
Last modified:
27/06/2026
Description
In JetBrains YouTrack before 2026.2.16593 improper access control allowed reading users' private data via the comment templates endpoint
Impact
Base Score 3.x
4.30
Severity 3.x
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:jetbrains:youtrack:*:*:*:*:*:*:*:* | 2026.2.16593 (excluding) |
To consult the complete list of CPE names with products and versions, see this page



