JetBrains Toolbox App
cpe:2.3:a:jetbrains:toolbox:*:*:*:*:*:*:*, +1 more
- < 2.6
A vulnerability exists in the JetBrains Toolbox App SSH plugin prior to version 2.6, where host key verification was not properly implemented. This flaw could potentially be exploited to perform man-in-the-middle attacks by accepting any SSH host key without validation.
The lack of host key verification in the SSH plugin could lead to man-in-the-middle attacks, allowing an attacker to intercept and potentially alter communications between the user and the SSH server.
Users can update to JetBrains Toolbox App version 2.6 or later, where this vulnerability has been addressed.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.