Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
teamcity vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv3
CVE-2022-25264
In JetBrains TeamCity prior to 2021.2.3, environment variables of the "password" type could be logged in some cases.
Jetbrains Teamcity
5.3
CVSSv3
CVE-2021-25772
In JetBrains TeamCity prior to 2020.2.2, TeamCity server DoS was possible via server integration.
Jetbrains Teamcity
6.1
CVSSv3
CVE-2021-25773
JetBrains TeamCity prior to 2020.2 was vulnerable to reflected XSS on several pages.
Jetbrains Teamcity
4.3
CVSSv3
CVE-2021-25774
In JetBrains TeamCity prior to 2020.2.1, a user could get access to the GitHub access token of another user.
Jetbrains Teamcity
3.8
CVSSv3
CVE-2021-25775
In JetBrains TeamCity prior to 2020.2.1, the server admin could create and see access tokens for any other users.
Jetbrains Teamcity
7.5
CVSSv3
CVE-2021-25776
In JetBrains TeamCity prior to 2020.2, an ECR token could be exposed in a build's parameters.
Jetbrains Teamcity
5.3
CVSSv3
CVE-2021-25777
In JetBrains TeamCity prior to 2020.2.1, permissions during token removal were checked improperly.
Jetbrains Teamcity
5.3
CVSSv3
CVE-2021-25778
In JetBrains TeamCity prior to 2020.2.1, permissions during user deletion were checked improperly.
Jetbrains Teamcity
9.8
CVSSv3
CVE-2022-24331
In JetBrains TeamCity prior to 2021.1.4, GitLab authentication impersonation was possible.
Jetbrains Teamcity
5.3
CVSSv3
CVE-2022-24332
In JetBrains TeamCity prior to 2021.2, a logout action didn't remove a Remember Me cookie.
Jetbrains Teamcity
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-35229
privilege escalation
local users
CVE-2024-5405
CVE-2024-27842
CVE-2024-5274
CVE-2024-5378
CVE-2024-34152
hard-coded
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »