CVE-2026-75044
EUVD-2026-6024317.08.2026, 16:17
In JetBrains YouTrack before 2025.3.156085, 2026.1.13914, 2026.2.18095 missing authorisation allowed an authenticated user to delete arbitrary entities via the mailbox endpointEnginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| jetbrains | youtrack | 𝑥 < 2025.3.156085 |
| jetbrains | youtrack | 2026.1 ≤ 𝑥 < 2026.1.13914 |
| jetbrains | youtrack | 2026.2 ≤ 𝑥 < 2026.2.18095 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration