JETBRAINS has reported three critical vulnerabilities affecting its products, specifically CVE-2026-50242 (authentication bypass), CVE-2026-56142 (privilege escalation), and CVE-2026-53915 (remote code execution), with severities rated up to 10.0 on the CVSS scale. These vulnerabilities can impact self-managed Hub, YouTrack, and GoLand instances. Updates have been released to fix these issues, and there is currently no evidence of their exploitation in the wild. JetBrains advises users to upgrade to the latest versions immediately to mitigate risks.
JetBrains Patches CVSS 10 Authentication Bypass Affecting 15 Million Developers
CyberSIXT Evidence Panel
Article by CyberSIXT