CVE-2025-43014

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Apr 17, 2025
Updated: Apr 23, 2025
CWE ID 304

Summary

CVE-2025-43014 is a vulnerability affecting the JetBrains Toolbox App before version 2.6. This issue permits the SSH plugin to establish connections without adequate user confirmation. An attacker could potentially exploit this weakness to gain unauthorized access to a user's system, leading to potential data theft or system compromise. Users are strongly advised to update their Toolbox App to the latest version to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • JetBrains Toolbox

Affected Vendors

  • JetBrains