CVE-2026-86504: JetBrains Intellij Idea
High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.
In JetBrains IntelliJ IDEA before 2026.2.2 missing project-trust confirmation before building a Dev Container allowed host-level code execution
Affected products
- JetBrains Intellij Idea: before 2026.2.2 (fixed in 2026.2.2)
Published 2026-09-07. Last modified 2026-09-09.