JetBrains TeamCity
cpe:2.3:a:jetbrains:teamcity:*:*:*:*:*:*:*
- < 2025.07
A vulnerability exists in JetBrains TeamCity in versions prior to 2025.07, where password reset and email verification tokens were generated using weak hashing algorithms. This flaw could potentially be exploited to compromise the integrity of the token-based verification process.
The vulnerability could lead to unauthorized access or manipulation of user accounts by exploiting the weak hashing of password reset and email verification tokens.
Users can update to JetBrains TeamCity version 2025.07 or later, where this vulnerability has been addressed.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.