PT-2019-11552 · Jetbrains · Kotlin+1
CVSS v3.1
8.1
Alta
| Vetor | AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions:
JetBrains IntelliJ IDEA versions prior to Kotlin plugin version 1.3.30
Description:
The issue allows for a potential MITM attack due to JetBrains IntelliJ IDEA projects created using the Kotlin (JS Client/JVM Server) IDE Template resolving Gradle artifacts using an http connection.
Recommendations:
For versions prior to Kotlin plugin version 1.3.30, update the Kotlin plugin to version 1.3.30 to resolve the issue.
Correção
Missing Encryption of Sensitive Data
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Jetbrains Intellij Idea
Kotlin