JetBrains TeamCity Open Redirect Vulnerability in VCS Root Editing

Vulnerability

An open redirect vulnerability has been identified in JetBrains TeamCity versions prior to 2025.03.2. This vulnerability occurs on the VCS Root editing page, where improper validation allows for redirection to external sites.

Impact

Exploitation of this vulnerability could lead to open redirect, allowing attackers to redirect users to malicious sites, potentially causing phishing or other social engineering attacks.

Remediation

Users can update to JetBrains TeamCity version 2025.03.2 or later to address this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
5.0
impact
0.8
exploitability
7.4
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.