Skip to content

Products › Brands

Brand

JetBrains: actively exploited vulnerabilities

4 vulnerabilities in JetBrains products (TeamCity) are in CISA’s catalog of exploited vulnerabilities, 1 of them added in the last 90 days. Last added: August 5, 2026.

The brand’s general security advisories page, not the advisory for a specific vulnerability (address checked September 28, 2026).

By category

Add just one JetBrains category to your radar, or open its page.

A high count also reflects how widely a product is deployed and how much attackers care about it: it is not a security rating.

Affected products

  • TeamCity4 vulnerabilities, Development and CI/CD

Name used by CISA: JetBrains. Product families: indicative classification by this site.

Patch first

In the order of the main list (Patch first): recent additions first, then the most severe. The number is the rank within this JetBrains list.

  1. Rank 1

    JetBrains TeamCityCVE-2026-63077

    JetBrains TeamCity Deserialization of Untrusted Data Vulnerability

    Hunt for compromise (CISA)Ransomware

    CVSS severity 9.8critical

    Added Aug 5, 2026

  2. Rank 2

    JetBrains TeamCityCVE-2024-27199

    JetBrains TeamCity Relative Path Traversal Vulnerability

    RansomwareCVE from 2024, added in 2026

    CVSS severity 7.3high

    Added Apr 20, 2026

  3. Rank 3

    JetBrains TeamCityCVE-2024-27198

    JetBrains TeamCity Authentication Bypass Vulnerability

    Ransomware

    CVSS severity 9.8critical

    Added Mar 7, 2024

  4. Rank 4

    JetBrains TeamCityCVE-2023-42793

    JetBrains TeamCity Authentication Bypass Vulnerability

    Ransomware

    CVSS severity 9.8critical

    Added Oct 4, 2023

Follow and verify

Indicative classification, based on the vendor and product names given by CISA. How products are classified.