In JetBrains GoLand before 2026.2.2.1 missing authentication on the GoLand profiler's injected pprof server exposed profiling data
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.jetbrains.com/privacy-security/issues-fixed/ |
|
History
Mon, 07 Sep 2026 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Missing Authentication Exposes Profiling Data in JetBrains GoLand Profiler | |
| First Time appeared |
Jetbrains
Jetbrains goland |
|
| Vendors & Products |
Jetbrains
Jetbrains goland |
Mon, 07 Sep 2026 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In JetBrains GoLand before 2026.2.2.1 missing authentication on the GoLand profiler's injected pprof server exposed profiling data | |
| Weaknesses | CWE-306 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: JetBrains
Published:
Updated: 2026-09-07T16:26:51.153Z
Reserved: 2026-09-07T16:13:41.786Z
Link: CVE-2026-86506
No data.
Status : Received
Published: 2026-09-07T17:17:29.130
Modified: 2026-09-07T17:17:29.130
Link: CVE-2026-86506
No data.
OpenCVE Enrichment
Updated: 2026-09-07T17:45:17Z
Weaknesses