OCTOBER 2, 2026
Live Feed
Back to database
Case File

CVE-2026-103493

HIGH · CVSS 8.1

Source: NVD + CISA KEV + EPSS · Published 2026-10-01 · Last synced 2026-10-02

CyberRota Analysis

AI-Generated

JetBrains YouTrack versions prior to 2026.2.19422 are vulnerable to stored cross-site scripting (XSS) attacks through the processing of Mermaid and LaTeX content. This vulnerability could allow attackers to inject malicious scripts that execute in the context of a user's session, potentially compromising sensitive data and user accounts. Organizations using affected versions of YouTrack should prioritize patching to mitigate the risk of exploitation.

CVE
CVE-2026-103493
Severity
HIGH
CVSS
8.1
EPSS
N/A

Original NVD Description

In JetBrains YouTrack before 2026.2.19422 stored XSS via Mermaid and LaTeX content was possible

Related CVEs

Other vulnerabilities affecting the same vendor(s)