JetBrains IntelliJ IDEA Untrusted Project Opening Vulnerability Over SSH

Vulnerability

A vulnerability exists in JetBrains IntelliJ IDEA versions prior to 2025.3, allowing untrusted remote projects to be opened over SSH without proper confirmation. This could lead to unauthorized code execution or other security risks associated with loading unverified projects.

Impact

Exploitation of this vulnerability could result in unauthorized access to project files and potential execution of malicious code, depending on the contents of the opened project.

Remediation

Users can update to JetBrains IntelliJ IDEA version 2025.3 or later to address this vulnerability.

Added: Dec 16, 2025, 6:45 PM
Updated: Dec 16, 2025, 6:45 PM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
0.6
exploitability
4.7
remediation
7.7
relevance
1.5
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.