Filtered by vendor Jetbrains Subscriptions
Filtered by product Ktor Subscriptions
Total 22 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2019-12736 1 Jetbrains 1 Ktor 2024-11-21 9.8 Critical
JetBrains Ktor framework before 1.2.0-rc does not sanitize the username provided by the user for the LDAP protocol, leading to command injection.
CVE-2019-10102 1 Jetbrains 2 Kotlin, Ktor 2024-11-21 N/A
JetBrains Ktor framework (created using the Kotlin IDE template) versions before 1.1.0 were resolving artifacts using an http connection during the build process, potentially allowing an MITM attack. This issue was fixed in Kotlin plugin version 1.3.30.