📦

teamcity

Vendor: jetbrains

Actively Exploited 3 CISA KEV List
PoC / Exploits 6 Code Available
Total RCEs 15 Remote Access
Total CVEs 361 Total Indexed
Avg. EPSS 3.87% Exploit Prob.
Latest CVE CVE-2026-59796 Jul 10

Security Vulnerability Index

Page 1 / 37
8.1 CVSS

In JetBrains TeamCity before 2026.1.2 pipeline modification was possible due to improper permission checks

EPSS: 0.25%
8.1 CVSS

In JetBrains TeamCity before 2026.1.2 stored XSS via unauthenticated agent registration was possible

EPSS: 0.23%
7.3 CVSS

In JetBrains TeamCity before 2026.1.2 stored XSS on the cloud profile page was possible via agent-reported data

EPSS: 0.18%
8.8 CVSS

In JetBrains TeamCity before 2026.1.2 arbitrary file access was possible via the Perforce VCS integration

EPSS: 0.34%
3.4 CVSS

In JetBrains TeamCity before 2026.1 stored XSS on the SAML login page was possible

EPSS: 0.21%
3.1 CVSS

In JetBrains TeamCity before 2026.1 open redirect in the SAML plugin was possible

EPSS: 0.16%
6.5 CVSS

In JetBrains TeamCity before 2026.1 credentials could be exposed in thread names

EPSS: 0.25%
4.3 CVSS

In JetBrains TeamCity before 2026.1 credentials parameters were exposed via parameter autocompletion

EPSS: 0.21%
4.3 CVSS

In JetBrains TeamCity before 2025.11.2 exposure of sensitive data via default agent parameters

EPSS: 0.67%
6.5 CVSS

In JetBrains TeamCity before 2026.1 insufficient username validation in the SAML plugin

EPSS: 0.21%