CVE-2026-64810

Summary

In JetBrains IntelliJ IDEA before 2026.2 hTML injection was possible in an IDE notification, allowing silent user activity tracking

Affected Software

VendorProductVersion RangeStatus
JetBrainsIntelliJ IDEA0 < 2026.2affected

Weaknesses

  • CWE-79: CWE-79

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: partial

References