Filters

Versions

Jetbrains TeamcityPath Traversal

7.5
First published (updated )

Jetbrains TeamcityPath Traversal

7.5
First published (updated )

Jetbrains TeamcityIn JetBrains TeamCity before 2024.07.1 possible privilege escalation due to incorrect directory perm…

7.8
First published (updated )

Jetbrains TeamcityIn JetBrains TeamCity before 2024.07 an OAuth code for JetBrains Space could be stolen via Space App…

7.5
First published (updated )

SolarWinds Access Rights ManagerSolarWinds Access Rights Manager (ARM) Deserialization of Untrusted Data Remote Code Execution

EPSS
0.04%
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Jetbrains TeamcityCSRF

8.8
First published (updated )

Jetbrains TeamcityIn JetBrains TeamCity before 2023.05.2 a ReDoS attack was possible via integration with issue tracke…

7.5
First published (updated )

Jetbrains TeamcityIn JetBrains TeamCity before 2023.05.2 a token with limited permissions could be used to gain full a…

8.8
First published (updated )

Jetbrains TeamcityIn JetBrains TeamCity before 2023.05 a specific endpoint was vulnerable to brute force attacks

7.5
First published (updated )

Jetbrains TeamcityIn JetBrains TeamCity version before 2022.10, Password parameters could be exposed in the build log …

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Jetbrains TeamcityIn JetBrains TeamCity version before 2022.10, Project Viewer could see scrambled secure values in th…

7.5
First published (updated )

Jetbrains TeamcityIn JetBrains TeamCity before 2022.04.2 build parameter injection was possible

8.8
First published (updated )

Jetbrains TeamcityIn JetBrains TeamCity before 2021.2.3, environment variables of the "password" type could be logged …

7.5
First published (updated )

Jetbrains TeamcityCSRF

8.8
First published (updated )

Jetbrains TeamcityIn JetBrains TeamCity before 2021.2.1, editing a user account to change its password didn't terminat…

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Jetbrains TeamcityJetBrains TeamCity before 2021.2 was vulnerable to a Time-of-check/Time-of-use (TOCTOU) race-conditi…

8.1
First published (updated )

Jetbrains TeamcityIn JetBrains TeamCity before 2021.1, information disclosure via the Docker Registry connection dialo…

7.5
First published (updated )

Jetbrains TeamcityIn JetBrains TeamCity before 2021.1, passwords in cleartext sometimes could be stored in VCS.

7.5
First published (updated )

Jetbrains TeamcityIn JetBrains TeamCity before 2021.1.1, insufficient authentication checks for agent requests were ma…

7.5
First published (updated )

Jetbrains TeamcityIn JetBrains TeamCity before 2020.2.3, insufficient checks of the redirect_uri were made during GitH…

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Jetbrains TeamcityIn JetBrains TeamCity before 2020.2.3, account takeover was potentially possible during a password r…

8.8
First published (updated )

Jetbrains TeamcitySSRF

7.5
First published (updated )

Jetbrains TeamcityIn the TeamCity IntelliJ plugin before 2020.2.2.85899, DoS was possible.

7.5
First published (updated )

Jetbrains TeamcitySSRF

7.5
First published (updated )

Jetbrains TeamcityIn JetBrains TeamCity before 2020.2, an ECR token could be exposed in a build's parameters.

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Jetbrains TeamcityIn JetBrains TeamCity before 2020.1, users with the Modify Group permission can elevate other users'…

8.8
First published (updated )

Jetbrains TeamcityIn JetBrains TeamCity before 2019.2.1, the application state is kept alive after a user ends his ses…

7.5
First published (updated )

Jetbrains TeamcityInfoleak

7.5
First published (updated )

Jetbrains TeamcityIn JetBrains TeamCity before 2019.1.5, some server-stored passwords could be shown via the web UI.

7.5
First published (updated )

Jetbrains TeamcityAn issue was discovered in JetBrains TeamCity 2018.2.4. It had no SSL certificate validation for som…

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Jetbrains TeamcityAn issue was discovered in JetBrains TeamCity 2018.2.4. The TeamCity server was not using some secur…

7.5
First published (updated )

Jetbrains TeamcityInput Validation

7.5
First published (updated )

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203