CVE-2026-25847: JetBrains Pycharm

Medium severity, CVSS 6.1. EPSS: 0.3% chance of exploitation in the next 30 days.

In JetBrains PyCharm before 2025.3.2 a DOM-based XSS on Jupyter viewer page was possible

Affected products

  • JetBrains Pycharm: before 2025.3.2 (fixed in 2025.3.2)

Published 2026-02-09. Last modified 2026-06-17.