Vulnerabilities > Jetbrains > Teamcity > 8.1.1

DATE CVE VULNERABILITY TITLE RISK
2025-05-20 CVE-2025-47851 Cross-site Scripting vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2025.03.2 stored XSS via GitHub Checks Webhook was possible
network
low complexity
jetbrains CWE-79
5.4
2025-05-20 CVE-2025-47852 Cross-site Scripting vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2025.03.2 stored XSS via YouTrack integration was possible
network
low complexity
jetbrains CWE-79
5.4
2025-05-20 CVE-2025-47853 Cross-site Scripting vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2025.03.2 stored XSS via Jira integration was possible
network
low complexity
jetbrains CWE-79
5.4
2025-05-20 CVE-2025-47854 Open Redirect vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2025.03.2 open redirect was possible on editing VCS Root page
network
low complexity
jetbrains CWE-601
6.1
2025-04-25 CVE-2025-46432 Information Exposure Through Log Files vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2025.03.1 base64-encoded credentials could be exposed in build logs
network
low complexity
jetbrains CWE-532
6.5
2025-04-25 CVE-2025-46433 Relative Path Traversal vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2025.03.1 improper path validation in loggingPreset parameter was possible
network
low complexity
jetbrains CWE-23
critical
9.8
2025-04-25 CVE-2025-46618 Cross-site Scripting vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2025.03.1 stored XSS was possible on Data Directory tab
network
low complexity
jetbrains CWE-79
6.1
2025-03-27 CVE-2025-31139 Information Exposure Through Log Files vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2025.03 base64 encoded password could be exposed in build log
network
low complexity
jetbrains CWE-532
6.5
2025-03-27 CVE-2025-31140 Cross-site Scripting vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2025.03 stored XSS was possible on Cloud Profiles page
network
low complexity
jetbrains CWE-79
6.1
2025-03-27 CVE-2025-31141 Information Exposure Through an Error Message vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2025.03 exception could lead to credential leakage on Cloud Profiles page
network
low complexity
jetbrains CWE-209
7.5