logo

JetBrains Urging Customers to Patch Critical TeamCity Flaw that Enables OS Command Execution

ID: c5de4b1d-80f2-5563-a529-2c401ba59b2e

STIX ID: report--c5de4b1d-80f2-5563-a529-2c401ba59b2e

Feed Name: cybersecurityNews.com

Threat Score
78/100

Date Published: 2026-07-28

Date Updated: 2026-07-29

Author: Abinaya

...
...

JetBrains released emergency security updates addressing CVE-2026-63077, a critical unauthenticated remote code execution vulnerability in TeamCity On-Premises that allows attackers to bypass authentication via the agent polling protocol and execute arbitrary OS commands; fixed releases (2025.11.7 and 2026.1.3) and a security patch plugin are available, and JetBrains reported no known active exploitation at time of disclosure.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.