CVE-2026-59794
- EPSS 0.21%
- Veröffentlicht 10.07.2026 14:18:58
- Zuletzt bearbeitet 10.07.2026 18:49:04
In JetBrains TeamCity before 2026.1.2 stored XSS on the cloud profile page was possible via agent-reported data
CVE-2026-59793
- EPSS 0.38%
- Veröffentlicht 10.07.2026 14:18:57
- Zuletzt bearbeitet 14.07.2026 05:16:19
In JetBrains TeamCity before 2026.1.2 arbitrary file access was possible via the Perforce VCS integration
CVE-2026-49380
- EPSS 0.17%
- Veröffentlicht 29.05.2026 18:15:51
- Zuletzt bearbeitet 22.07.2026 06:10:00
In JetBrains TeamCity before 2026.1 open redirect in the SAML plugin was possible
CVE-2026-49381
- EPSS 0.21%
- Veröffentlicht 29.05.2026 18:15:51
- Zuletzt bearbeitet 22.07.2026 06:10:00
In JetBrains TeamCity before 2026.1 stored XSS on the SAML login page was possible
CVE-2026-49377
- EPSS 0.7%
- Veröffentlicht 29.05.2026 18:15:50
- Zuletzt bearbeitet 22.07.2026 06:10:00
In JetBrains TeamCity before 2025.11.2 exposure of sensitive data via default agent parameters
CVE-2026-49378
- EPSS 0.22%
- Veröffentlicht 29.05.2026 18:15:50
- Zuletzt bearbeitet 22.07.2026 06:10:00
In JetBrains TeamCity before 2026.1 credentials parameters were exposed via parameter autocompletion
CVE-2026-49379
- EPSS 0.26%
- Veröffentlicht 29.05.2026 18:15:50
- Zuletzt bearbeitet 22.07.2026 06:10:00
In JetBrains TeamCity before 2026.1 credentials could be exposed in thread names
CVE-2026-49375
- EPSS 0.22%
- Veröffentlicht 29.05.2026 18:15:49
- Zuletzt bearbeitet 22.07.2026 06:10:00
In JetBrains TeamCity before 2026.1, 2025.11.5 reflected XSS was possible on the repository download page
CVE-2026-49376
- EPSS 0.22%
- Veröffentlicht 29.05.2026 18:15:49
- Zuletzt bearbeitet 22.07.2026 06:10:00
In JetBrains TeamCity before 2026.1 insufficient username validation in the SAML plugin
CVE-2026-49372
- EPSS 0.3%
- Veröffentlicht 29.05.2026 18:15:48
- Zuletzt bearbeitet 22.07.2026 06:10:00
In JetBrains TeamCity before 2026.1, 2025.11.5 unauthenticated SSRF via build status was possible