CVE-2025-43014
CVSS 3.1 Score 6.5 of 10 (medium)
Details
Published Apr 17, 2025
Updated: Apr 23, 2025
CWE ID 304
Summary
CVE-2025-43014 is a vulnerability affecting the JetBrains Toolbox App before version 2.6. This issue permits the SSH plugin to establish connections without adequate user confirmation. An attacker could potentially exploit this weakness to gain unauthorized access to a user's system, leading to potential data theft or system compromise. Users are strongly advised to update their Toolbox App to the latest version to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- JetBrains Toolbox
Affected Vendors
- JetBrains