CyberRota Analysis
AI-GeneratedJetBrains IntelliJ IDEA versions prior to 2026.2.1 are vulnerable to an XML External Entity (XXE) injection in the Eclipse settings importers, which could allow attackers to read sensitive files on the server or perform other malicious actions. Organizations using affected versions of IntelliJ IDEA should prioritize patching to mitigate potential data exposure risks.
CVE
CVE-2026-75058
Severity
MEDIUM
CVSS
5.5
EPSS
0.12%
Original NVD Description
In JetBrains IntelliJ IDEA before 2026.2.1 xXE was possible in the Eclipse settings importers
Related CVEs
Other vulnerabilities affecting the same vendor(s)