JetBrains Rider Arbitrary File Overwrite Vulnerability in Custom Archive Unpacker

Vulnerability

A vulnerability in JetBrains Rider versions prior to 2025.1.2 allows for arbitrary file overwriting. This issue arises during remote debugging sessions, where the custom archive unpacker fails to properly manage file extraction, potentially leading to unauthorized modifications of files.

Impact

Exploitation of this vulnerability could result in unauthorized file modifications, which may disrupt normal application behavior or overwrite critical data.

Remediation

Users can update to JetBrains Rider version 2025.1.2 or later to address this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
4.4
exploitability
3.3
remediation
0.0
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.