Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
JetBrains TeamCity versions before 2026.2.1 contain a vulnerability where missing validation of Git submodule URLs allows an attacker with limited privileges to read local repositories on the server. This issue is identified as CVE-2026-106219 and has a medium severity with a CVSS score of 6.5. The vulnerability does not impact integrity or availability but allows unauthorized disclosure of local repository contents. Join the discussion | GCVE Database | 10/06/2026, 18:31:34 UTC Added: 10/06/2026, 21:41:58 UTC |
0 A vulnerability in JetBrains TeamCity before versions 2026.1.3 and 2025.11.7 allows a Kotlin DSL sandbox escape that can lead to remote code execution (RCE) on the server. This flaw enables an attacker with limited privileges to execute arbitrary code on the affected server without user interaction. Join the discussion | GCVE Database | 10/06/2026, 18:31:34 UTC Added: 10/06/2026, 21:41:57 UTC |
0 In JetBrains TeamCity before 2026.2.1 missing validation of Git submodule URLs allowed reading local repositories on the server Join the discussion | CVE Database V5 | 10/06/2026, 16:33:06 UTC Added: 10/06/2026, 16:49:13 UTC |
0 A vulnerability in JetBrains TeamCity before versions 2026.2, 2026.1.4, and 2025.11.8 allows an attacker to take over administrator accounts via the password reset functionality. This issue is tracked as CVE-2026-100255 and is associated with CWE-1289. The vulnerability has a high severity rating with a CVSS 3.1 score of 8.1. Join the discussion | CVE Database V5 | 09/30/2026, 15:17:46 UTC Added: 09/30/2026, 15:35:12 UTC |
0 CVE-2026-100253 is a high-severity vulnerability in JetBrains TeamCity that allows sandbox escape and code execution via the versioned settings Kotlin DSL. It affects versions before 2026.2, including 2026.1.4 and 2025.11.8. The vulnerability is identified as CWE-184 and has a CVSS score of 8.8, indicating a critical impact on confidentiality, integrity, and availability. Join the discussion | CVE Database V5 | 09/30/2026, 15:17:44 UTC Added: 09/30/2026, 15:35:12 UTC |
0 A critical code execution vulnerability (CWE-94) exists in JetBrains TeamCity versions prior to 2026.1.2 and 2025.11.6. This vulnerability affects Git VCS roots and allows for remote code execution. The CVSS score is 9.1, indicating a high severity with significant impact on confidentiality, integrity, and availability. Join the discussion | CVE Database V5 | 07/23/2026, 12:28:40 UTC Added: 07/23/2026, 12:52:49 UTC |
0 In JetBrains TeamCity before 2026.1.2 pipeline modification was possible due to improper permission checks Join the discussion | CVE Database V5 | 07/10/2026, 14:18:59 UTC Added: 07/10/2026, 14:48:11 UTC |
0 In JetBrains TeamCity before 2026.1.2 stored XSS on the cloud profile page was possible via agent-reported data Join the discussion | CVE Database V5 | 07/10/2026, 14:18:58 UTC Added: 07/10/2026, 14:48:11 UTC |
0 In JetBrains TeamCity before 2026.1.2 arbitrary file access was possible via the Perforce VCS integration Join the discussion | CVE Database V5 | 07/10/2026, 14:18:57 UTC Added: 07/10/2026, 14:48:11 UTC |
0 CVE-2026-49381 is a stored cross-site scripting (XSS) vulnerability in JetBrains TeamCity versions before 2026.1. The vulnerability exists on the SAML login page, allowing an attacker with high privileges to inject malicious scripts that are stored and later executed in the context of users accessing that page. The CVSS score is 3.4, indicating a low severity impact primarily affecting confidentiality with no direct impact on integrity or availability. No official patch or remediation guidance is currently provided by the vendor, and no known exploits are reported in the wild. Join the discussion | CVE Database V5 | 05/29/2026, 18:15:51 UTC Added: 05/29/2026, 18:33:50 UTC |
Showing 1 to 10 of 23 results