CVE-2026-33392: JetBrains Youtrack

High severity, CVSS 7.2. EPSS: 0.5% chance of exploitation in the next 30 days.

In JetBrains YouTrack before 2025.3.131383 high privileged user can achieve RCE via sandbox bypass

Affected products

  • JetBrains Youtrack: before 2025.3.131383 (fixed in 2025.3.131383)

Published 2026-04-17. Last modified 2026-06-17.