Filter

Jetbrains TeamcityIn JetBrains TeamCity before 2023.05 bypass of permission checks allowing to perform admin actions w…

First published (updated )

Jetbrains TeamcityIn JetBrains TeamCity before 2023.05 improper permission checks allowed users without appropriate pe…

First published (updated )

Jetbrains TeamcityXSS

First published (updated )

Jetbrains TeamcityXSS

First published (updated )

Jetbrains TeamcityIn JetBrains TeamCity before 2023.05 parameters of the "password" type from build dependencies could…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Jetbrains TeamcityIn JetBrains TeamCity before 2023.05 open redirect during oAuth configuration was possible

First published (updated )

Jetbrains TeamcityXSS

First published (updated )

Jetbrains TeamcityXSS

First published (updated )

Jetbrains TeamcityIn JetBrains TeamCity before 2023.05 a specific endpoint was vulnerable to brute force attacks

7.5
First published (updated )

Jetbrains TeamcityIn JetBrains TeamCity before 2023.05 authentication checks were missing – 2FA was not checked for so…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Jetbrains TeamcityXSS

First published (updated )

Jetbrains TeamcityXSS

First published (updated )

JetBrains KtorIn JetBrains Ktor before 2.3.1 headers containing authentication data could be added to the exceptio…

3.3
First published (updated )

Jetbrains YoutrackIn JetBrains YouTrack before 2023.1.10518 a DoS attack was possible via Helpdesk forms

7.5
First published (updated )

Jetbrains YoutrackXSS

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Jetbrains TeamcityIn JetBrains TeamCity before 2024.12 improper access control allowed viewing details of unauthorized…

First published (updated )

Jetbrains TeamcityIn JetBrains TeamCity before 2024.12 improper access control allowed unauthorized users to modify bu…

First published (updated )

Jetbrains TeamcityIn JetBrains TeamCity before 2024.12 build credentials allowed unauthorized viewing of projects

First published (updated )

Jetbrains TeamcityIn JetBrains TeamCity before 2024.12 access tokens were not revoked after removing user roles

8.8
First published (updated )

Jetbrains TeamcityXSS

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Jetbrains TeamcityIn JetBrains TeamCity before 2024.12 backup file exposed user credentials and session cookies

First published (updated )

Jetbrains TeamcityIn JetBrains TeamCity before 2024.12 password field value were accessible to users with view setting…

First published (updated )

Jetbrains TeamcityXSS

First published (updated )

Jetbrains TeamcityXEE

7.1
First published (updated )

Jetbrains TeamcityIn JetBrains TeamCity before 2024.03 server administrators could remove arbitrary files from the ser…

EPSS
0.04%
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Jetbrains TeamcityXEE

8.1
EPSS
0.04%
First published (updated )

Jetbrains TeamcityIn JetBrains TeamCity before 2024.03 2FA could be bypassed by providing a special URL parameter

7.4
EPSS
0.04%
First published (updated )

Jetbrains TeamcityIn JetBrains TeamCity before 2024.03 authenticated users without administrative permissions could re…

EPSS
0.04%
First published (updated )

Jetbrains TeamcityXSS

First published (updated )

Jetbrains TeamcityIn JetBrains TeamCity before 2022.04.7, 2022.10.6, 2023.05.6, 2023.11.5, 2024.03.2 a third-party age…

8.1
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203