JetBrains YouTrack Global Junie Token Exposure Vulnerability

Vulnerability

A vulnerability in JetBrains YouTrack prior to version 2025.3.104432 allows for the unintentional exposure of the global Junie token due to a misconfiguration in the Junie. This could lead to unauthorized access or actions involving the token.

Impact

Exploitation of this vulnerability could result in unauthorized access to the global Junie token, potentially allowing for unauthorized actions or access within YouTrack that involve the token.

Remediation

Users can update to JetBrains YouTrack version 2025.3.104432 or later to address this vulnerability.

Added: Nov 10, 2025, 2:20 PM
Updated: Nov 10, 2025, 2:20 PM

Vulnerability Rating

Custom Algorithm
spread
5.0
impact
2.5
exploitability
5.2
remediation
7.7
relevance
1.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.