First published: Wed Jul 12 2023(Updated: )
In JetBrains TeamCity before 2023.05.1 parameters of the "password" type could be shown in the UI in certain composite build configurations
Credit: security@jetbrains.com security@jetbrains.com
Affected Software | Affected Version | How to fix |
---|---|---|
Jetbrains Teamcity | <2023.05.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-38062.
The severity of CVE-2023-38062 is medium.
The affected software is JetBrains TeamCity before version 2023.05.1.
The impact of CVE-2023-38062 is that parameters of the 'password' type could be shown in the UI in certain composite build configurations.
To fix CVE-2023-38062, update JetBrains TeamCity to version 2023.05.1 or higher.