VendorsJetBrainsteamcityall versions
Vulnerabilities

JetBrains TeamCity

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

275CVEs
CVE-2022-24335
JetBrains TeamCity before 2021.2 was vulnerable to a Time-of-check/Time-of-use (TOCTOU) race-condition attack in agent registration via XML-RPC.
Published 2022-02-25 · Modified
8.1EPSS 0.007
CVE-2024-31139
In JetBrains TeamCity before 2024.03 xXE was possible in the Maven build steps detector
Published 2024-03-28 · Analyzed
8.1EPSS 0.005
CVE-2026-59796
In JetBrains TeamCity before 2026.1.2 pipeline modification was possible due to improper permission checks
Published 2026-07-10 · Analyzed
8.1EPSS 0.004
CVE-2026-59795
In JetBrains TeamCity before 2026.1.2 stored XSS via unauthenticated agent registration was possible
Published 2026-07-10 · Analyzed
8.1EPSS 0.003
CVE-2024-36377
In JetBrains TeamCity before 2024.03.2 certain TeamCity API endpoints did not check user permissions
Published 2024-05-29 · Analyzed
8.1EPSS 0.003
CVE-2024-36376
In JetBrains TeamCity before 2024.03.2 users could perform actions that should not be available to them based on their permissions
Published 2024-05-29 · Analyzed
8.1EPSS 0.003
CVE-2024-36365
In JetBrains TeamCity before 2022.04.7, 2022.10.6, 2023.05.6, 2023.11.5, 2024.03.2 a third-party agent could impersonate a cloud agent
Published 2024-05-29 · Analyzed
8.1EPSS 0.003
CVE-2024-29880
In JetBrains TeamCity before 2023.11 users with access to the agent machine might obtain permissions of the user running the agent process
Published 2024-03-21 · Analyzed
7.8EPSS 0.002
CVE-2024-43114
In JetBrains TeamCity before 2024.07.1 possible privilege escalation due to incorrect directory permissions
Published 2024-08-06 · Analyzed
7.8EPSS 0.002
CVE-2025-59457
In JetBrains TeamCity before 2025.07.2 missing Git URL validation allowed credential leakage on Windows
Published 2025-09-17 · Analyzed
7.7EPSS 0.008
CVE-2026-49374
In JetBrains TeamCity before 2026.1 improper permission checks exposed build configuration parameters
Published 2026-05-29 · Analyzed
7.6EPSS 0.003
CVE-2024-47949
In JetBrains TeamCity before 2024.07.3 path traversal allowed backup file write to arbitrary location
Published 2024-10-08 · Analyzed
7.5EPSS 0.235
CVE-2023-39174
In JetBrains TeamCity before 2023.05.2 a ReDoS attack was possible via integration with issue trackers
Published 2023-07-25 · Modified
7.5EPSS 0.017
CVE-2021-26310
In the TeamCity IntelliJ plugin before 2020.2.2.85899, DoS was possible.
Published 2021-05-11 · Modified
7.5EPSS 0.015
CVE-2021-31910
In JetBrains TeamCity before 2020.2.3, information disclosure via SSRF was possible.
Published 2021-05-11 · Modified
7.5EPSS 0.013
CVE-2020-35667
JetBrains TeamCity Plugin before 2020.2.85695 SSRF. Vulnerability that could potentially expose user credentials.
Published 2021-02-03 · Modified
7.5EPSS 0.013
CVE-2019-15038
An issue was discovered in JetBrains TeamCity 2018.2.4. The TeamCity server was not using some security-related HTTP headers. The issue was fixed in TeamCity 2019.1.
Published 2019-10-01 · Modified
7.5EPSS 0.011
CVE-2019-12841
Incorrect handling of user input in ZIP extraction was detected in JetBrains TeamCity. The issue was fixed in TeamCity 2018.2.2.
Published 2019-07-03 · Modified
7.5EPSS 0.011
CVE-2020-7909
In JetBrains TeamCity before 2019.1.5, some server-stored passwords could be shown via the web UI.
Published 2020-01-30 · Modified
7.5EPSS 0.011
CVE-2020-11687
In JetBrains TeamCity before 2019.2.2, password values were shown in an unmasked format on several pages.
Published 2020-04-22 · Modified
7.5EPSS 0.011
CVE-2021-25776
In JetBrains TeamCity before 2020.2, an ECR token could be exposed in a build's parameters.
Published 2021-02-03 · Modified
7.5EPSS 0.011
CVE-2021-43196
In JetBrains TeamCity before 2021.1, information disclosure via the Docker Registry connection dialog is possible.
Published 2021-11-09 · Modified
7.5EPSS 0.010
CVE-2020-11688
In JetBrains TeamCity before 2019.2.1, the application state is kept alive after a user ends his session.
Published 2020-04-22 · Modified
7.5EPSS 0.010
CVE-2022-25264
In JetBrains TeamCity before 2021.2.3, environment variables of the "password" type could be logged in some cases.
Published 2022-02-25 · Modified
7.5EPSS 0.010
CVE-2021-37545
In JetBrains TeamCity before 2021.1.1, insufficient authentication checks for agent requests were made.
Published 2021-08-06 · Modified
7.5EPSS 0.009
CVE-2025-67742
In JetBrains TeamCity before 2025.11 path traversal was possible via file upload
Published 2025-12-11 · Analyzed
7.5EPSS 0.008
CVE-2022-24341
In JetBrains TeamCity before 2021.2.1, editing a user account to change its password didn't terminate sessions of the edited user.
Published 2022-02-25 · Modified
7.5EPSS 0.008
CVE-2021-31913
In JetBrains TeamCity before 2020.2.3, insufficient checks of the redirect_uri were made during GitHub SSO token exchange.
Published 2021-05-11 · Modified
7.5EPSS 0.007
CVE-2019-15042
An issue was discovered in JetBrains TeamCity 2018.2.4. It had no SSL certificate validation for some external https connections. This was fixed in TeamCity 2019.1.
Published 2019-10-01 · Modified
7.5EPSS 0.007
CVE-2021-37548
In JetBrains TeamCity before 2021.1, passwords in cleartext sometimes could be stored in VCS.
Published 2021-08-06 · Modified
7.5EPSS 0.006
CVE-2022-44624
In JetBrains TeamCity version before 2022.10, Password parameters could be exposed in the build log if they contained special characters
Published 2022-11-03 · Modified
7.5EPSS 0.006
CVE-2022-44623
In JetBrains TeamCity version before 2022.10, Project Viewer could see scrambled secure values in the MetaRunner settings
Published 2022-11-03 · Modified
7.5EPSS 0.006
CVE-2024-47948
In JetBrains TeamCity before 2024.07.3 path traversal leading to information disclosure was possible via server backups
Published 2024-10-08 · Analyzed
7.5EPSS 0.005
CVE-2023-34227
In JetBrains TeamCity before 2023.05 a specific endpoint was vulnerable to brute force attacks
Published 2023-05-31 · Modified
7.5EPSS 0.005
CVE-2026-49372
In JetBrains TeamCity before 2026.1, 2025.11.5 unauthenticated SSRF via build status was possible
Published 2026-05-29 · Analyzed
7.5EPSS 0.004
CVE-2024-36378
In JetBrains TeamCity before 2024.03.2 server was susceptible to DoS attacks with incorrect auth tokens
Published 2024-05-29 · Analyzed
7.5EPSS 0.004
CVE-2025-31141
In JetBrains TeamCity before 2025.03 exception could lead to credential leakage on Cloud Profiles page
Published 2025-03-27 · Analyzed
7.5EPSS 0.004
CVE-2024-41829
In JetBrains TeamCity before 2024.07 an OAuth code for JetBrains Space could be stolen via Space Application connection
Published 2024-07-22 · Modified
7.5EPSS 0.003
CVE-2025-54535
In JetBrains TeamCity before 2025.07 password reset and email verification tokens were using weak hashing algorithms
Published 2025-07-28 · Analyzed
7.5EPSS 0.002
CVE-2025-54529
In JetBrains TeamCity before 2025.07 a CSRF was possible in external OAuth login integration
Published 2025-07-28 · Analyzed
7.5EPSS 0.001
← Prev2 / 7Next →