Unrated severityNVD Advisory· Published Feb 25, 2026· Updated Feb 25, 2026
CVE-2026-28196
CVE-2026-28196
Description
In JetBrains TeamCity before 2025.11.3 disabling versioned settings left a credentials config on disk
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
2- Living Off the Pipeline: Defending Against CI/CD SubversionSentinelOne Labs · May 15, 2026
- JetBrains TeamCity vulnerability allows privilege escalation, API exposure (CVE-2026-44413)Help Net Security · May 12, 2026