Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
jetbrains teamcity vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2023-34228
In JetBrains TeamCity prior to 2023.05 authentication checks were missing – 2FA was not checked for some sensitive account actions
Jetbrains Teamcity
NA
CVE-2023-34229
In JetBrains TeamCity prior to 2023.05 stored XSS in GitLab Connection page was possible
Jetbrains Teamcity
5
CVSSv2
CVE-2021-43195
In JetBrains TeamCity prior to 2021.1.2, some HTTP security headers were missing.
Jetbrains Teamcity
5
CVSSv2
CVE-2021-43196
In JetBrains TeamCity prior to 2021.1, information disclosure via the Docker Registry connection dialog is possible.
Jetbrains Teamcity
5
CVSSv2
CVE-2021-43201
In JetBrains TeamCity prior to 2021.1.3, a newly created project could take settings from an already deleted project.
Jetbrains Teamcity
NA
CVE-2023-43566
In JetBrains TeamCity prior to 2023.05.4 stored XSS was possible during nodes configuration
Jetbrains Teamcity
5
CVSSv2
CVE-2022-24332
In JetBrains TeamCity prior to 2021.2, a logout action didn't remove a Remember Me cookie.
Jetbrains Teamcity
4
CVSSv2
CVE-2022-24333
In JetBrains TeamCity prior to 2021.2, blind SSRF via an XML-RPC call was possible.
Jetbrains Teamcity
5
CVSSv2
CVE-2022-24334
In JetBrains TeamCity prior to 2021.2.1, the Agent Push feature allowed selection of any private key on the server.
Jetbrains Teamcity
6.8
CVSSv2
CVE-2022-24335
JetBrains TeamCity prior to 2021.2 was vulnerable to a Time-of-check/Time-of-use (TOCTOU) race-condition attack in agent registration via XML-RPC.
Jetbrains Teamcity
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-4654
CVE-2023-49606
encryption
NULL pointer dereference
CVE-2024-4439
CVE-2024-4649
race condition
CVE-2024-27202
CVE-2024-34566
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »