JetBrains TeamCity
cpe:2.3:a:jetbrains:teamcity:*:*:*:*:*:*:*
- < 2025.07
A Cross-Site Request Forgery (CSRF) vulnerability has been identified in JetBrains TeamCity versions prior to 2025.07. This issue arises in the external OAuth login integration, allowing attackers to potentially exploit the CSRF vulnerability during the authentication process.
Exploitation of this vulnerability could lead to unauthorized actions being performed on behalf of the user, potentially allowing attackers to manipulate user accounts or access sensitive information.
Users can upgrade to JetBrains TeamCity version 2025.07 or later to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.