What is CVE-2026-75044?
This CVE describes a missing authorisation vulnerability in JetBrains YouTrack, where an authenticated user could delete arbitrary entities via the mailbox endpoint. It affects unpatched versions of the software. Users are advised to update to a fixed version.
Azərbaycanca: Bu CVE, JetBrains YouTrack-in müəyyən versiyalarında autentifikasiya olunmuş istifadəçinin "mailbox endpoint" vasitəsilə icazəsiz olaraq ixtiyari obyektləri silməsinə imkan verən authorisation çatışmazlığını təsvir edir. Bu, təhlükəsizlik yaması tətbiq olunmayan sistemlərə təsir edir. İstifadəçilərə təsirlənmiş versiyalardan yenilənmələri tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-862
FAQ1
What does the CVE-2026-75044 vulnerability allow in JetBrains YouTrack?
CVE-2026-75044 describes a missing authorisation vulnerability that allows an authenticated user to delete arbitrary entities via the mailbox endpoint.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.