Multiple local vulnerabilities in JetBrains WebStorm allow an attacker to execute arbitrary code, requiring local access to the target system. The CVSS Base Score for this issue is 8.4 (High). Affected versions are all releases prior to WebStorm 2026.2, for which a fixed version is available.
[WID-SEC-2026-2507] JetBrains WebStorm: Mehrere Schwachstellen ermöglichen Codeausführung CVSS Base Score 8.4 (hoch) CVSS Temporal Score 7.3 (hoch) Remoteangriff nein Datum 23.07.2026 Stand 24.07.2026 Mitigation ja Betroffene Systeme Betriebssystem Sonstiges UNIX Windows Produktbeschreibung WebStorm ist eine Entwicklungsumgebung für JavaScript. Produkte 23.07.2026 JetBrains WebStorm <2026.2 Angriff Angriff Ein lokaler Angreifer kann mehrere Schwachstellen in JetBrains WebStorm ausnutzen, um beliebigen Programmcode auszuführen. CVE Informationen Versionshistorie Feedback zum Advisory geben