CVE-2026-64810: JetBrains Intellij Idea

Medium severity, CVSS 6.1. EPSS: 0.3% chance of exploitation in the next 30 days.

In JetBrains IntelliJ IDEA before 2026.2 hTML injection was possible in an IDE notification, allowing silent user activity tracking

Affected products

  • JetBrains Intellij Idea: before 2026.2 (fixed in 2026.2)

Published 2026-07-23. Last modified 2026-07-28.