PT-2025-5362 · Jetbrains · Jetbrains Hub

Published

2025-01-21

·

Updated

2025-01-30

·

CVE-2025-24456

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions JetBrains Hub versions prior to 2024.3.55417
Description The issue allows for privilege escalation through LDAP authentication mapping.
Recommendations For versions prior to 2024.3.55417, update to version 2024.3.55417 or later to resolve the issue.

Fix

LPE

Missing Authentication

Authentication Bypass Using an Alternate Path or Channel

Weakness Enumeration

Related Identifiers

BDU:2025-02396
CVE-2025-24456

Affected Products

Jetbrains Hub