CVE-2024-27198

9.8CRITICAL

In JetBrains TeamCity before 2023.11.4 authentication bypass allowing to perform admin actions was possible

Published: 3/4/2024Updated: 10/24/2025

CISA Known Exploited Vulnerability

JetBrains TeamCity contains an authentication bypass vulnerability that allows an attacker to perform admin actions.

Required Action:

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Due Date:

2024-03-28

Known Ransomware Use

Description

In JetBrains TeamCity before 2023.11.4 authentication bypass allowing to perform admin actions was possible

AI AnalysisPowered by AI

Affected Products

jetbrainsteamcity

Available Exploits (1)

References