Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
jetbrains teamcity vulnerabilities and exploits
(subscribe to this query)
383
VMScore
CVE-2021-43197
In JetBrains TeamCity prior to 2021.1.2, email notifications could include unescaped HTML for XSS.
Jetbrains Teamcity
445
VMScore
CVE-2021-43201
In JetBrains TeamCity prior to 2021.1.3, a newly created project could take settings from an already deleted project.
Jetbrains Teamcity
516
VMScore
CVE-2022-24330
In JetBrains TeamCity prior to 2021.2.1, a redirection to an external site was possible.
Jetbrains Teamcity
668
VMScore
CVE-2022-24331
In JetBrains TeamCity prior to 2021.1.4, GitLab authentication impersonation was possible.
Jetbrains Teamcity
445
VMScore
CVE-2022-24332
In JetBrains TeamCity prior to 2021.2, a logout action didn't remove a Remember Me cookie.
Jetbrains Teamcity
445
VMScore
CVE-2022-24334
In JetBrains TeamCity prior to 2021.2.1, the Agent Push feature allowed selection of any private key on the server.
Jetbrains Teamcity
605
VMScore
CVE-2022-24335
JetBrains TeamCity prior to 2021.2 was vulnerable to a Time-of-check/Time-of-use (TOCTOU) race-condition attack in agent registration via XML-RPC.
Jetbrains Teamcity
356
VMScore
CVE-2022-24337
In JetBrains TeamCity prior to 2021.2, health items of pull requests were shown to users who lacked appropriate permissions.
Jetbrains Teamcity
383
VMScore
CVE-2022-24338
JetBrains TeamCity prior to 2021.2.1 was vulnerable to reflected XSS.
Jetbrains Teamcity
NA
CVE-2022-44646
In JetBrains TeamCity version prior to 2022.10, no audit items were added upon editing a user's settings
Jetbrains Teamcity
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-22120
CVE-2024-35921
CVE-2024-35874
brute force
CVE-2024-36080
unprivileged
CVE-2024-35917
IDOR
CVE-2024-4947
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »