CVE-2025-26492: Critical severity JetBrains TeamCity vulnerability
In JetBrains TeamCity before 2024.12.2 improper Kubernetes connection settings could expose sensitive resources
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-26492?
CVE-2025-26492 has been classified with a severity that indicates a significant risk of exposing sensitive resources due to improper Kubernetes connection settings.
How do I fix CVE-2025-26492?
To fix CVE-2025-26492, update JetBrains TeamCity to version 2024.12.2 or later where the vulnerability has been addressed.
What types of sensitive resources are at risk in CVE-2025-26492?
CVE-2025-26492 could potentially expose sensitive Kubernetes resources, including environment variables, secrets, and configurations.
Which versions of JetBrains TeamCity are affected by CVE-2025-26492?
CVE-2025-26492 affects all versions of JetBrains TeamCity prior to 2024.12.2.
Is there any workaround for CVE-2025-26492 if I can't update immediately?
Currently, it is advisable to implement stricter access controls and review Kubernetes connection settings as a temporary measure for CVE-2025-26492.