CVE-2024-35299: JetBrains Youtrack

High severity, CVSS 7.5. EPSS: 0.3% chance of exploitation in the next 30 days.

In JetBrains YouTrack before 2024.1.29548 the SMTPS protocol communication lacked proper certificate hostname validation

Affected products

  • JetBrains Youtrack: before 2024.1.29548 (fixed in 2024.1.29548)

Published 2024-05-16. Last modified 2026-06-17.