CVE-2026-86502: JetBrains Intellij Idea

High severity, CVSS 8.4. EPSS: 0.2% chance of exploitation in the next 30 days.

In JetBrains IntelliJ IDEA before 2026.2.2 missing TLS and authentication on the IJent gRPC server allowed local code execution on Remote Development hosts

Affected products

  • JetBrains Intellij Idea: before 2026.2.2 (fixed in 2026.2.2)

Published 2026-09-07. Last modified 2026-09-09.