---
id: CVE-2025-58335
title: |-
  In JetBrains Junie before 252.284.66,
  251.284.66,
  243.284.66,
  252.284.61,
  251.284.61,
  243.284.61,
  252.284.50,
  252.284.54,
  251.284.54,
  251.284.50,
  243.284.54,
  243.284.50 information disclosure was possible via search_project function
summary: |-
  In JetBrains Junie before 252.284.66,
  251.284.66,
  243.284.66,
  252.284.61,
  251.284.61,
  243.284.61,
  252.284.50,
  252.284.54,
  251.284.54,
  251.284.50,
  243.284.54,
  243.284.50 information disclosure was possible via search_project function
severity: medium
cvss: 5.5
cvssVector: 'CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:C/C:H/I:N/A:N'
cwe:
  - CWE-356
vendor: jetbrains
product: junie
affected:
  - junie < 243.284.50
  - 'junie >= 251.72.165, < 251.284.50'
  - 'junie >= 252.204.139, < 252.284.50'
patched:
  - junie 252.284.50
published: '2025-08-28'
updated: '2026-09-26'
sourceUpdated: '2026-09-26T00:10:00.127'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-58335'
references:
  - url: 'https://www.jetbrains.com/privacy-security/issues-fixed/'
    label: cve@jetbrains.com
tags:
  - nvd
epss: 0.00217
epssPercentile: 0.10811
ingestedAt: '2026-09-26T00:22:39.890Z'
---

## Overview

In JetBrains Junie before 252.284.66,
251.284.66,
243.284.66,
252.284.61,
251.284.61,
243.284.61,
252.284.50,
252.284.54,
251.284.54,
251.284.50,
243.284.54,
243.284.50 information disclosure was possible via search_project function

## Affected

- `junie < 243.284.50`
- `junie >= 251.72.165, < 251.284.50`
- `junie >= 252.204.139, < 252.284.50`

## Remediation

Upgrade past the affected range:

- `junie 252.284.50`
