CVE Vulnerabilities

CVE-2025-58335

Product UI does not Warn User of Unsafe Actions

Published: Aug 28, 2025 | Modified: Jan 20, 2026
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

In JetBrains Junie before 252.284.66, 251.284.66, 243.284.66, 252.284.61, 251.284.61, 243.284.61, 252.284.50, 252.284.54, 251.284.54, 251.284.50, 243.284.54, 243.284.50 information disclosure was possible via search_project function

Weakness

The product’s user interface does not warn the user before undertaking an unsafe action on behalf of that user. This makes it easier for attackers to trick users into inflicting damage to their system.

Affected Software

NameVendorStart VersionEnd Version
JunieJetbrains*243.284.50 (excluding)
JunieJetbrains251.72.165 (including)251.284.50 (excluding)
JunieJetbrains252.204.139 (including)252.284.50 (excluding)

References