Threats Tagged 'cve-2026-86485'
View all threats tagged with 'cve-2026-86485'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-86485'
Click on any threat for detailed analysis and mitigation recommendations
In JetBrains YouTrack before 2026.2.18634 iP spoofing via HTTP headers allowed forged Bitbucket webhooks (CVE-2026-86485)CVE-2026-86485 0 JetBrains YouTrack versions before 2026.2.18634 contain a vulnerability that allows IP spoofing via HTTP headers, enabling attackers to forge Bitbucket webhooks. This flaw is identified as CVE-2026-86485 and is classified with low severity. The vulnerability relates to improper validation of IP addresses in HTTP headers, which could allow an attacker to impersonate legitimate Bitbucket webhook requests. Join the discussion | GCVE Database | 09/07/2026, 18:31:32 UTC Added: 09/08/2026, 04:37:41 UTC |
CVE-2026-86485: CWE-291 in JetBrains YouTrackCVE-2026-86485 0 CVE-2026-86485 is a low-severity vulnerability in JetBrains YouTrack before version 2026.2.18634. It involves IP spoofing via HTTP headers that allows forged Bitbucket webhooks to be accepted by the system. The vulnerability is related to improper authentication of webhook requests, categorized under CWE-291 (Improper Authentication). No official patch or remediation guidance has been provided yet. Join the discussion | CVE Database V5 | 09/07/2026, 16:26:43 UTC Added: 09/07/2026, 16:37:45 UTC |
Showing 1 to 2 of 2 results