CVE-2025-54530: Critical severity JetBrains TeamCity vulnerability
Published Jul 28, 2025
·Updated
In JetBrains TeamCity before 2025.07 privilege escalation was possible due to incorrect directory permissions
Affected Software
2 affected components
JetBrains TeamCity<2025.07
JetBrains TeamCity<2025.07
Event History
Jul 28, 2025
CVE Published
via MITRE·04:20 PM
Data Sourced
via MITRE·04:20 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-54530?
The severity of CVE-2025-54530 is considered high due to the potential for privilege escalation.
2
How do I fix CVE-2025-54530?
To fix CVE-2025-54530, ensure that directory permissions in JetBrains TeamCity are correctly configured to prevent unauthorized access.
3
What versions of JetBrains TeamCity are affected by CVE-2025-54530?
CVE-2025-54530 affects JetBrains TeamCity versions before 2025.07.
4
Can CVE-2025-54530 be exploited remotely?
Yes, CVE-2025-54530 can be exploited remotely if proper permissions are not enforced.
5
Is there a patch available for CVE-2025-54530?
Yes, upgrading to JetBrains TeamCity version 2025.07 or later will mitigate the vulnerability.