Skip to main content

Threat Intelligence Database

Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Package: pkg:maven/org.jetbrains.teamcity/teamcity-server

Threat Intelligence

Click on any threat for detailed analysis and mitigation recommendations

JetBrains TeamCity versions before 2026.2.1 contain a vulnerability where missing validation of Git submodule URLs allows an attacker with limited privileges to read local repositories on the server. This issue is identified as CVE-2026-106219 and has a medium severity with a CVSS score of 6.5. The vulnerability does not impact integrity or availability but allows unauthorized disclosure of local repository contents.

Join the discussion

A vulnerability in JetBrains TeamCity before versions 2026.1.3 and 2025.11.7 allows a Kotlin DSL sandbox escape that can lead to remote code execution (RCE) on the server. This flaw enables an attacker with limited privileges to execute arbitrary code on the affected server without user interaction.

Join the discussion
0

In JetBrains TeamCity before 2026.2.1 missing validation of Git submodule URLs allowed reading local repositories on the server

Join the discussion
0

A vulnerability in JetBrains TeamCity before versions 2026.2, 2026.1.4, and 2025.11.8 allows an attacker to take over administrator accounts via the password reset functionality. This issue is tracked as CVE-2026-100255 and is associated with CWE-1289. The vulnerability has a high severity rating with a CVSS 3.1 score of 8.1.

Join the discussion
0

CVE-2026-100253 is a high-severity vulnerability in JetBrains TeamCity that allows sandbox escape and code execution via the versioned settings Kotlin DSL. It affects versions before 2026.2, including 2026.1.4 and 2025.11.8. The vulnerability is identified as CWE-184 and has a CVSS score of 8.8, indicating a critical impact on confidentiality, integrity, and availability.

Join the discussion
0

A critical code execution vulnerability (CWE-94) exists in JetBrains TeamCity versions prior to 2026.1.2 and 2025.11.6. This vulnerability affects Git VCS roots and allows for remote code execution. The CVSS score is 9.1, indicating a high severity with significant impact on confidentiality, integrity, and availability.

Join the discussion
0

In JetBrains TeamCity before 2026.1.2 pipeline modification was possible due to improper permission checks

Join the discussion
0

In JetBrains TeamCity before 2026.1.2 stored XSS on the cloud profile page was possible via agent-reported data

Join the discussion
0

In JetBrains TeamCity before 2026.1.2 arbitrary file access was possible via the Perforce VCS integration

Join the discussion
0

CVE-2026-49381 is a stored cross-site scripting (XSS) vulnerability in JetBrains TeamCity versions before 2026.1. The vulnerability exists on the SAML login page, allowing an attacker with high privileges to inject malicious scripts that are stored and later executed in the context of users accessing that page. The CVSS score is 3.4, indicating a low severity impact primarily affecting confidentiality with no direct impact on integrity or availability. No official patch or remediation guidance is currently provided by the vendor, and no known exploits are reported in the wild.

Join the discussion

Showing 1 to 10 of 23 results

Filters:Package: pkg:maven/org.jetbrains.teamcity/teamcity-server
Page 1 of 3
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses