---
id: CVE-2025-58334
title: >-
  In JetBrains IDE Services before 2025.5.0.1086, 

  2025.4.2.2164 users without appropriate permissions could assign
  high-privileged role for themselves
summary: >-
  In JetBrains IDE Services before 2025.5.0.1086, 

  2025.4.2.2164 users without appropriate permissions could assign
  high-privileged role for themselves
severity: high
cvss: 8.1
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N'
cwe:
  - CWE-862
vendor: jetbrains
product: ide_services
affected:
  - ide_services < 2025.4.2.2164
  - 'ide_services >= 2025.5, < 2025.5.0.1086'
patched:
  - ide_services 2025.5.0.1086
published: '2025-08-28'
updated: '2026-09-26'
sourceUpdated: '2026-09-26T00:10:00.127'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-58334'
references:
  - url: 'https://www.jetbrains.com/privacy-security/issues-fixed/'
    label: cve@jetbrains.com
tags:
  - nvd
epss: 0.00286
epssPercentile: 0.18803
ingestedAt: '2026-09-26T00:22:39.889Z'
---

## Overview

In JetBrains IDE Services before 2025.5.0.1086, 
2025.4.2.2164 users without appropriate permissions could assign high-privileged role for themselves

## Affected

- `ide_services < 2025.4.2.2164`
- `ide_services >= 2025.5, < 2025.5.0.1086`

## Remediation

Upgrade past the affected range:

- `ide_services 2025.5.0.1086`
