OCTOBER 8, 2026
Live Feed
Back to database
Case File

CVE-2026-100262

HIGH · CVSS 7.6 EPSS 0.21%

Source: NVD + CISA KEV + EPSS · Published 2026-09-30 · Last synced 2026-10-08

CyberRota Analysis

AI-Generated

JetBrains YouTrack versions prior to 2026.2.18991 are vulnerable due to a missing authorization flaw that permits users with read-only project access to overwrite project notification templates. This could lead to unauthorized modifications of project notifications, potentially disrupting communication and project management workflows. Organizations using YouTrack should prioritize remediation to safeguard their project integrity and prevent misuse by unauthorized users.

CVE
CVE-2026-100262
Severity
HIGH
CVSS
7.6
EPSS
0.21%

Original NVD Description

In JetBrains YouTrack before 2026.2.18991 missing authorisation allowed users with read-only project access to overwrite project notification templates

Related CVEs

Other vulnerabilities affecting the same vendor(s)