JetBrains IntelliJ IDEA
cpe:2.3:a:jetbrains:intellij_idea:*:*:*:*:*:*:*
- < 2025.2
A vulnerability allowing HTML injection has been identified in JetBrains IntelliJ IDEA versions prior to 2025.2. This issue arises through the Remote Development feature, where untrusted HTML could be injected and potentially executed.
Exploitation of this vulnerability allows for HTML injection, which could be used to execute scripts in the context of the user.
Users can update to JetBrains IntelliJ IDEA version 2025.2 or later to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.