Vulnerabilities > Jetbrains > Teamcity > 2018.2

DATE CVE VULNERABILITY TITLE RISK
2023-07-12 CVE-2023-38062 Unspecified vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2023.05.1 parameters of the "password" type could be shown in the UI in certain composite build configurations
network
low complexity
jetbrains
6.5
2023-07-12 CVE-2023-38063 Unspecified vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2023.05.1 stored XSS while running custom builds was possible
network
low complexity
jetbrains
5.4
2023-07-12 CVE-2023-38064 Unspecified vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2023.05.1 build chain parameters of the "password" type could be written to the agent log
network
low complexity
jetbrains
6.5
2023-07-12 CVE-2023-38065 Unspecified vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2023.05.1 stored XSS while viewing the build log was possible
network
low complexity
jetbrains
5.4
2023-07-12 CVE-2023-38066 Unspecified vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2023.05.1 reflected XSS via the Referer header was possible during artifact downloads
network
low complexity
jetbrains
6.1
2023-07-12 CVE-2023-38067 Unspecified vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2023.05.1 build parameters of the "password" type could be written to the agent log
network
low complexity
jetbrains
6.5
2023-05-31 CVE-2023-34218 Unspecified vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2023.05 bypass of permission checks allowing to perform admin actions was possible
network
low complexity
jetbrains
critical
9.8
2023-05-31 CVE-2023-34219 Incorrect Authorization vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2023.05 improper permission checks allowed users without appropriate permissions to edit Build Configuration settings via REST API
network
low complexity
jetbrains CWE-863
4.3
2023-05-31 CVE-2023-34220 Unspecified vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2023.05 stored XSS in the Commit Status Publisher window was possible
network
low complexity
jetbrains
5.4
2023-05-31 CVE-2023-34221 Unspecified vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2023.05 stored XSS in the Show Connection page was possible
network
low complexity
jetbrains
5.4