PT-2025-29580 · Jetbrains · Jetbrains Youtrack

Published

2025-07-15

·

Updated

2025-10-14

·

CVE-2025-53959

CVSS v3.1

7.6

High

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:H/I:L/A:N
Name of the Vulnerable Software and Affected Versions JetBrains YouTrack versions prior to 2025.2.86069 JetBrains YouTrack versions prior to 2024.3.85077 JetBrains YouTrack versions prior to 2025.1.86199
Description An issue exists in JetBrains YouTrack that allows for email spoofing through an administrative API.
Recommendations Update JetBrains YouTrack to version 2025.2.86069 or later. Update JetBrains YouTrack to version 2024.3.85077 or later. Update JetBrains YouTrack to version 2025.1.86199 or later.

Fix

Missing Authorization

Weakness Enumeration

Related Identifiers

BDU:2025-08799
CVE-2025-53959

Affected Products

Jetbrains Youtrack