CVE-2025-53959: JetBrains Youtrack

High severity, CVSS 7.6. EPSS: 0.3% chance of exploitation in the next 30 days.

In JetBrains YouTrack before 2025.2.86069, 2024.3.85077, 2025.1.86199 email spoofing via an administrative API was possible

Affected products

  • JetBrains Youtrack: before 2024.3.85077 (fixed in 2024.3.85077); from 2025.1.62455, before 2025.1.86199 (fixed in 2025.1.86199)

Published 2025-07-15. Last modified 2026-06-17.