Vulnerabilities > Jetbrains > Teamcity > 2019.1.1

DATE CVE VULNERABILITY TITLE RISK
2019-10-31 CVE-2019-18363 Information Exposure vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2019.1.2, access could be gained to the history of builds of a deleted build configuration under some circumstances.
network
low complexity
jetbrains CWE-200
5.0
2019-09-05 CVE-2019-15848 Cross-site Scripting vulnerability in Jetbrains Teamcity 2019.1/2019.1.1
JetBrains TeamCity 2019.1 and 2019.1.1 allows cross-site scripting (XSS), potentially making it possible to send an arbitrary HTTP request to a TeamCity server under the name of the currently logged-in user.
network
jetbrains CWE-79
4.3