JetBrains

Teamcity

281 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Medienbericht
  • EPSS 0.21%
  • Veröffentlicht 10.07.2026 14:18:58
  • Zuletzt bearbeitet 10.07.2026 18:49:04

In JetBrains TeamCity before 2026.1.2 stored XSS on the cloud profile page was possible via agent-reported data

Medienbericht
  • EPSS 0.38%
  • Veröffentlicht 10.07.2026 14:18:57
  • Zuletzt bearbeitet 14.07.2026 05:16:19

In JetBrains TeamCity before 2026.1.2 arbitrary file access was possible via the Perforce VCS integration

  • EPSS 0.17%
  • Veröffentlicht 29.05.2026 18:15:51
  • Zuletzt bearbeitet 22.07.2026 06:10:00

In JetBrains TeamCity before 2026.1 open redirect in the SAML plugin was possible

  • EPSS 0.21%
  • Veröffentlicht 29.05.2026 18:15:51
  • Zuletzt bearbeitet 22.07.2026 06:10:00

In JetBrains TeamCity before 2026.1 stored XSS on the SAML login page was possible

  • EPSS 0.7%
  • Veröffentlicht 29.05.2026 18:15:50
  • Zuletzt bearbeitet 22.07.2026 06:10:00

In JetBrains TeamCity before 2025.11.2 exposure of sensitive data via default agent parameters

  • EPSS 0.22%
  • Veröffentlicht 29.05.2026 18:15:50
  • Zuletzt bearbeitet 22.07.2026 06:10:00

In JetBrains TeamCity before 2026.1 credentials parameters were exposed via parameter autocompletion

  • EPSS 0.26%
  • Veröffentlicht 29.05.2026 18:15:50
  • Zuletzt bearbeitet 22.07.2026 06:10:00

In JetBrains TeamCity before 2026.1 credentials could be exposed in thread names

  • EPSS 0.22%
  • Veröffentlicht 29.05.2026 18:15:49
  • Zuletzt bearbeitet 22.07.2026 06:10:00

In JetBrains TeamCity before 2026.1, 2025.11.5 reflected XSS was possible on the repository download page

  • EPSS 0.22%
  • Veröffentlicht 29.05.2026 18:15:49
  • Zuletzt bearbeitet 22.07.2026 06:10:00

In JetBrains TeamCity before 2026.1 insufficient username validation in the SAML plugin

  • EPSS 0.3%
  • Veröffentlicht 29.05.2026 18:15:48
  • Zuletzt bearbeitet 22.07.2026 06:10:00

In JetBrains TeamCity before 2026.1, 2025.11.5 unauthenticated SSRF via build status was possible