Product:

Teamcity

(Jetbrains)
Repositories

Unknown:

This might be proprietary software.

#Vulnerabilities 197
Date Id Summary Products Score Patch Annotated
2022-02-25 CVE-2022-24335 JetBrains TeamCity before 2021.2 was vulnerable to a Time-of-check/Time-of-use (TOCTOU) race-condition attack in agent registration via XML-RPC. Teamcity 8.1
2022-02-25 CVE-2022-24336 In JetBrains TeamCity before 2021.2.1, an unauthenticated attacker can cancel running builds via an XML-RPC request to the TeamCity server. Teamcity 5.3
2022-02-25 CVE-2022-24337 In JetBrains TeamCity before 2021.2, health items of pull requests were shown to users who lacked appropriate permissions. Teamcity 6.5
2022-02-25 CVE-2022-24338 JetBrains TeamCity before 2021.2.1 was vulnerable to reflected XSS. Teamcity 6.1
2022-02-25 CVE-2022-24339 JetBrains TeamCity before 2021.2.1 was vulnerable to stored XSS. Teamcity 5.4
2022-02-25 CVE-2022-24341 In JetBrains TeamCity before 2021.2.1, editing a user account to change its password didn't terminate sessions of the edited user. Teamcity 7.5
2022-02-25 CVE-2022-24340 In JetBrains TeamCity before 2021.2.1, XXE during the parsing of the configuration file was possible. Teamcity 9.8
2022-02-25 CVE-2022-24342 In JetBrains TeamCity before 2021.2.1, URL injection leading to CSRF was possible. Teamcity 8.8
2022-02-25 CVE-2022-25261 JetBrains TeamCity before 2021.2.2 was vulnerable to reflected XSS. Teamcity 6.1
2022-02-25 CVE-2022-25263 JetBrains TeamCity before 2021.2.3 was vulnerable to OS command injection in the Agent Push feature configuration. Teamcity 9.8