In JetBrains Kotlin from 1.4-M1 to 1.4-RC (as Kotlin 1.3.7x is not affected by the issue. Fixed version is 1.4.0) there is a script-cache privilege escalation vulnerability due to kotlin-main-kts cached scripts in the system temp directory, which is shared by all users by default.
https://www.oracle.com/security-alerts/cpuoct2021.html
https://github.com/advisories/GHSA-562r-vg33-8x8h
https://github.com/advisories/GHSA-c43q-5hpj-4crv
https://github.com/advisories/GHSA-5mcr-gq6c-3hq2
https://github.com/advisories/GHSA-g3wg-6mcf-8jj6
https://github.com/advisories/GHSA-269g-pwp5-87pp
https://blog.jetbrains.com/blog/2020/08/06/jetbrains-security-bulletin-q2-2020/