CVE-2025-29903 MEDIUM

CVE-2025-29903

Vendor Jetbrains
Product Runtime
Weakness CWE-426
Published March 12, 2025
Last update March 12, 2025

CVSS base score

5.2/10
Attack vector Local
Attack complexity Low
Privileges required Low
User interaction None
Confidentiality Low
Integrity Low

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N

What the vulnerability does

01Description

In JetBrains Runtime before 21.0.6b872.80 arbitrary dynamic library execution due to insecure macOS flags was possible

Key dates

02Disclosure timeline

March 12, 2025 CVE published
March 12, 2025 Record updated