CVE-2023-34226: XSS
Published May 31, 2023
·Updated
In JetBrains TeamCity before 2023.05 reflected XSS in the Subscriptions page was possible
Affected Software
1 affected component
JetBrains TeamCity<2023.05
Event History
May 31, 2023
CVE Published
via MITRE·01:03 PM
Data Sourced
via MITRE·01:03 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for the TeamCity reflected XSS vulnerability?
The vulnerability ID for the TeamCity reflected XSS vulnerability is CVE-2023-34226.
2
What is the severity of CVE-2023-34226?
The severity of CVE-2023-34226 is medium with a CVSS score of 6.1.
3
What is the affected software for CVE-2023-34226?
The affected software for CVE-2023-34226 is JetBrains TeamCity before version 2023.05.
4
How can the XSS vulnerability in JetBrains TeamCity be exploited?
The XSS vulnerability in JetBrains TeamCity can be exploited by an attacker injecting malicious code into the Subscriptions page and tricking a user into executing it.
5
Is there a fix available for CVE-2023-34226?
Yes, a fix for CVE-2023-34226 is available in JetBrains TeamCity version 2023.05 and later.