Critical severity9.8CISA KEVNVD Advisory· Published Sep 19, 2023· Updated Jun 17, 2026
CVE-2023-42793
CVE-2023-42793
Description
In JetBrains TeamCity before 2023.05.4 authentication bypass leading to RCE on TeamCity Server was possible
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
8- packetstormsecurity.com/files/174860/JetBrains-TeamCity-Unauthenticated-Remote-Code-Execution.htmlnvdExploitThird Party AdvisoryVDB Entry
- www.sonarsource.com/blog/teamcity-vulnerability/nvdExploitThird Party Advisory
- attackerkb.com/topics/1XEEEkGHzt/cve-2023-42793nvdThird Party Advisory
- blog.jetbrains.com/teamcity/2023/09/cve-2023-42793-vulnerability-post-mortem/nvdVendor Advisory
- www.jetbrains.com/privacy-security/issues-fixed/nvdVendor Advisory
- www.rapid7.com/blog/post/2023/09/25/etr-cve-2023-42793-critical-authentication-bypass-in-jetbrains-teamcity-ci-cd-servers/nvdBroken LinkThird Party Advisory
- www.cisa.gov/known-exploited-vulnerabilities-catalognvdUS Government Resource
- www.securityweek.com/recently-patched-teamcity-vulnerability-exploited-to-hack-servers/nvdPress/Media Coverage
News mentions
2- Inside the customer environment: Where threat actors, vulnerabilities, and exposed assets intersectTenable Blog · May 27, 2026
- JetBrains TeamCity vulnerability allows privilege escalation, API exposure (CVE-2026-44413)Help Net Security · May 12, 2026