Vulnerabilities > Jetbrains > Teamcity > 2018.2.2

DATE CVE VULNERABILITY TITLE RISK
2019-10-31 CVE-2019-18363 Information Exposure vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2019.1.2, access could be gained to the history of builds of a deleted build configuration under some circumstances.
network
low complexity
jetbrains CWE-200
5.0
2019-10-02 CVE-2019-12157 Improper Input Validation vulnerability in Jetbrains Teamcity and Upsource
In JetBrains UpSource versions before 2018.2 build 1293, there is credential disclosure via RPC commands.
network
low complexity
jetbrains CWE-20
critical
10.0
2019-07-03 CVE-2019-12845 Improper Authentication vulnerability in Jetbrains Teamcity
The generated Kotlin DSL settings allowed usage of an unencrypted connection for resolving artifacts.
network
low complexity
jetbrains CWE-287
5.0
2019-07-03 CVE-2019-12844 Code Injection vulnerability in Jetbrains Teamcity
A possible stored JavaScript injection was detected on one of the JetBrains TeamCity pages.
network
jetbrains CWE-94
4.3
2019-07-03 CVE-2019-12843 Code Injection vulnerability in Jetbrains Teamcity
A possible stored JavaScript injection requiring a deliberate server administrator action was detected.
network
jetbrains CWE-94
4.3