Vulnerabilities
Vulnerable Software
Jetbrains:  >> Teamcity  >> 8.0  Security Vulnerabilities
In JetBrains TeamCity before 2022.04.7, 2022.10.6, 2023.05.6, 2023.11.5 an XSS could be executed via certain report grouping and filtering operations
CVSS Score
5.4
EPSS Score
0.109
Published
2024-05-29
In JetBrains TeamCity before 2022.04.7, 2022.10.6, 2023.05.6, 2023.11.5 stored XSS via third-party reports was possible
CVSS Score
4.6
EPSS Score
0.06
Published
2024-05-29
In JetBrains TeamCity before 2022.04.7, 2022.10.6, 2023.05.6, 2023.11.5 reflected XSS via OAuth provider configuration was possible
CVSS Score
4.6
EPSS Score
0.003
Published
2024-05-29
In JetBrains TeamCity before 2022.04.7, 2022.10.6, 2023.05.6, 2023.11.5 stored XSS via issue tracker integration was possible
CVSS Score
4.6
EPSS Score
0.248
Published
2024-05-29
In JetBrains TeamCity before 2022.04.7, 2022.10.6, 2023.05.6, 2023.11.5, 2024.03.2 path traversal allowing to read files from server was possible
CVSS Score
6.5
EPSS Score
0.0
Published
2024-05-29
In JetBrains TeamCity before 2022.04.7, 2022.10.6, 2023.05.6, 2023.11.5 several Stored XSS in code inspection reports were possible
CVSS Score
4.6
EPSS Score
0.248
Published
2024-05-29
In JetBrains TeamCity before 2022.04.7, 2022.10.6, 2023.05.6, 2023.11.5 improper access control in Pull Requests and Commit status publisher build features was possible
CVSS Score
6.5
EPSS Score
0.0
Published
2024-05-29
In JetBrains TeamCity before 2022.04.7, 2022.10.6, 2023.05.6, 2023.11.5, 2024.03.2 a third-party agent could impersonate a cloud agent
CVSS Score
6.8
EPSS Score
0.0
Published
2024-05-29
In JetBrains TeamCity before 2023.11 stored XSS during restore from backup was possible
CVSS Score
5.4
EPSS Score
0.162
Published
2024-05-16
In JetBrains TeamCity before 2024.03.1 commit status publisher didn't check project scope of the GitHub App token
CVSS Score
5.5
EPSS Score
0.0
Published
2024-05-16


Contact Us

Shodan ® - All rights reserved