First published: Wed May 31 2023(Updated: )
In JetBrains TeamCity before 2023.05 stored XSS in the Commit Status Publisher window was possible
Credit: security@jetbrains.com
Affected Software | Affected Version | How to fix |
---|---|---|
Jetbrains Teamcity | <2023.05 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-34220.
The severity of CVE-2023-34220 is medium with a severity value of 5.4.
The affected software is JetBrains TeamCity before version 2023.05.
CVE-2023-34220 is a stored XSS (Cross-Site Scripting) vulnerability.
To fix CVE-2023-34220, update JetBrains TeamCity to version 2023.05 or later.