In JetBrains Hub before 2022.1.14638 stored XSS via project icon was possible.CreditsJulian MuñozReferenceshttps://www.jetbrains.com/privacy-security/issues-fixed/