CVE Vulnerabilities

CVE-2026-100261

Authentication Bypass Using an Alternate Path or Channel

Published: Sep 30, 2026 | Modified: Oct 02, 2026
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

In JetBrains YouTrack before 2026.2.18991 changing article visibility settings was possible without update permission

Weakness

The product requires authentication, but the product has an alternate path or channel that does not require authentication.

Affected Software

NameVendorStart VersionEnd Version
YoutrackJetbrains*2026.2.18991 (excluding)

Potential Mitigations

References