First published: Mon Mar 27 2023(Updated: )
In JetBrains TeamCity before 2022.10.3 stored XSS in Perforce connection settings was possible
Credit: security@jetbrains.com
Affected Software | Affected Version | How to fix |
---|---|---|
Jetbrains Teamcity | =2022.10.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-48426 refers to a vulnerability in JetBrains TeamCity before 2022.10.3 that allowed for stored cross-site scripting (XSS) in Perforce connection settings.
CVE-2022-48426 has a severity rating of medium with a CVSS score of 5.4.
CVE-2022-48426 affects JetBrains TeamCity versions before 2022.10.3, allowing for stored XSS in Perforce connection settings.
To mitigate CVE-2022-48426, it is recommended to update JetBrains TeamCity to version 2022.10.3 or later.
More information about CVE-2022-48426 can be found on the JetBrains website at https://www.jetbrains.com/privacy-security/issues-fixed/.