CVE-2019-10103
Last modified
CVE-2019-10103 is a vulnerability of currently unknown severity. JetBrains IntelliJ IDEA projects created using the Kotlin (JS Client/JVM Server) IDE Template were resolving Gradle artifacts using an http connection, potentially allowing an MITM attack. This issue, which was fixed in Kotlin plugin version 1.3.30, is similar to CVE-2019-10101.. EPSS estimates a 0.94% chance of exploitation in the next 30 days.
Description
JetBrains IntelliJ IDEA projects created using the Kotlin (JS Client/JVM Server) IDE Template were resolving Gradle artifacts using an http connection, potentially allowing an MITM attack. This issue, which was fixed in Kotlin plugin version 1.3.30, is similar to CVE-2019-10101.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Jetbrains | Kotlin | < 1.3.30 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2019-10103?
How severe is CVE-2019-10103?
How do I fix CVE-2019-10103?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2019
- CVE-2019-1010294Linaro/OP-TEE OP-TEE 3.3.0 and earlier is affected by: Round…
- CVE-2019-1010295Linaro/OP-TEE OP-TEE 3.3.0 and earlier is affected by: Buffe…
- CVE-2019-1010296Linaro/OP-TEE OP-TEE 3.3.0 and earlier is affected by: Buffe…
- CVE-2019-1010297Linaro/OP-TEE OP-TEE 3.3.0 and earlier is affected by: Buffe…
- CVE-2019-1010298Linaro/OP-TEE OP-TEE 3.3.0 and earlier is affected by: Buffe…
- CVE-2019-1010299The Rust Programming Language Standard Library 1.18.0 and la…5.3
- CVE-2019-1010300mz-automation libiec61850 1.3.2 1.3.1 1.3.0 is affected by: …
- CVE-2019-1010301jhead 3.03 is affected by: Buffer Overflow. The impact is: D…5.5
- CVE-2019-1010302jhead 3.03 is affected by: Incorrect Access Control. The imp…5.5
- CVE-2019-1010304Saleor Issue was introduced by merge commit: e1b01bad0703afd…
- CVE-2019-1010305libmspack 0.9.1alpha is affected by: Buffer Overflow. The im…5.5
- CVE-2019-1010306Slanger 0.6.0 is affected by: Remote Code Execution (RCE). T…
Are you affected by CVE-2019-10103?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
