← back
CVE-2022-29820lowCWE-1327

CVE-2022-29820

8Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 3epss 0.4%
exploitation probability
0.4%top 67% of all CVEs
observed exploitation
nono source reports it
In short

PyCharm's debugger port was accidentally exposed to your internal network before version 2022.1, allowing other computers on the same network to potentially connect and access debugging information.

Technical detail

The debugger listening port in PyCharm versions prior to 2022.1 was bound to network interfaces accessible from the internal network rather than localhost only. This allows unauthenticated local network attackers to connect to the debug server and potentially inspect or manipulate application state during debugging sessions.

Summary generated and translated by AI from the official description.
In JetBrains PyCharm before 2022.1 exposure of the debugger port to the internal network was possible
CVSS:3.1/AV:A/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N
Affected products
JetBrains · PyCharm