CVE-2026-86503

In JetBrains IntelliJ IDEA before 2026.2.2 opening an untrusted project could trigger SSRF via Kubernetes spec-source URL fetching

  • Published Sep 7, 2026
  • CVSS 3.3 low
  • 0.1% chance of exploitation in the next 30 days (EPSS)
  • A fix is available

Affected software

CVE-2026-86503 at the National Vulnerability Database