JetBrains TeamCity Remote Code Execution Vulnerability via Perforce Connection Settings

Vulnerability

A remote code execution vulnerability exists in JetBrains TeamCity versions prior to 2026.1. This issue arises from the application's handling of Perforce connection settings, which can be exploited to execute arbitrary code on the server.

Impact

Exploitation of this vulnerability allows authenticated users to execute arbitrary code on the TeamCity server.

Remediation

Users can upgrade to TeamCity version 2026.1 or later to address this vulnerability.

Added: May 29, 2026, 7:30 PM
Updated: May 29, 2026, 7:30 PM

Vulnerability Rating

Custom Algorithm
spread
5.0
impact
7.5
exploitability
5.2
remediation
7.7
relevance
9.7
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.