All intelligence
// vulnerability record
cached · NVD via COSMOS syncCVE-2026-75044
HIGHpublished 2026-08-17 16:17 UTC · 17 hours ago · modified 2026-08-17 17:16 UTC
8.1
CVSS / 10
// description
In JetBrains YouTrack before 2025.3.156085, 2026.1.13914, 2026.2.18095 missing authorisation allowed an authenticated user to delete arbitrary entities via the mailbox endpoint
// weaknesses (CWE)
- CWE-862