发布于3月6日3月6日 Members JetBrains IntelliJ IDEA: CVE-2022-48433: The NTLM hash could leak through an API method used in the IntelliJ IDEA built-in web server (IDEA-303249) Severity 5 CVSS (AV:N/AC:H/Au:N/C:C/I:N/A:N) Published 03/29/2023 Created 01/31/2025 Added 01/29/2025 Modified 02/05/2025 Description In JetBrains IntelliJ IDEA before 2023.1 the NTLM hash could leak through an API method used in the IntelliJ IDEA built-in web server. Solution(s) jetbrains-intellij-idea-upgrade-latest References https://attackerkb.com/topics/cve-2022-48433 CVE - 2022-48433 https://www.jetbrains.com/privacy-security/issues-fixed/