VYPR

by Jetbrains

Source repositories

CVEs (166)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2024-27199Hig0.737.30.91KEVMar 4, 2024In JetBrains TeamCity before 2023.11.4 path traversal allowing to perform limited admin actions was possible
CVE-2024-271980.280.93KEVMar 4, 2024In JetBrains TeamCity before 2023.11.4 authentication bypass allowing to perform admin actions was possible
CVE-2023-427930.280.93KEVSep 19, 2023In JetBrains TeamCity before 2023.05.4 authentication bypass leading to RCE on TeamCity Server was possible
CVE-2024-239170.060.73Feb 6, 2024In JetBrains TeamCity before 2023.11.3 authentication bypass leading to RCE was possible
CVE-2024-438100.040.48Aug 16, 2024In JetBrains TeamCity before 2024.07.1 reflected XSS was possible in the AWS Core plugin
CVE-2024-418250.040.56Jul 22, 2024In JetBrains TeamCity before 2024.07 stored XSS was possible on the Code Inspection tab
CVE-2024-363740.040.46May 29, 2024In JetBrains TeamCity before 2024.03.2 stored XSS via build step settings was possible
CVE-2024-363730.040.56May 29, 2024In JetBrains TeamCity before 2024.03.2 several stored XSS in untrusted builds settings were possible
CVE-2024-363710.040.55May 29, 2024In JetBrains TeamCity before 2023.05.6, 2023.11.5 stored XSS in Commit status publisher was possible
CVE-2024-363700.040.46May 29, 2024In JetBrains TeamCity before 2022.04.7, 2022.10.6, 2023.05.6, 2023.11.5 stored XSS via OAuth connection settings was possible
CVE-2024-363690.040.56May 29, 2024In JetBrains TeamCity before 2022.04.7, 2022.10.6, 2023.05.6, 2023.11.5 stored XSS via issue tracker integration was possible
CVE-2024-363630.040.56May 29, 2024In JetBrains TeamCity before 2022.04.7, 2022.10.6, 2023.05.6, 2023.11.5 several Stored XSS in code inspection reports were possible
CVE-2024-353020.040.47May 16, 2024In JetBrains TeamCity before 2023.11 stored XSS during restore from backup was possible
CVE-2024-563550.030.34Dec 20, 2024In JetBrains TeamCity before 2024.12 missing Content-Type header in RemoteBuildLogController response could lead to XSS
CVE-2024-563520.030.34Dec 20, 2024In JetBrains TeamCity before 2024.12 stored XSS was possible via image name on the agent details page
CVE-2024-438070.030.43Aug 16, 2024In JetBrains TeamCity before 2024.07.1 multiple stored XSS was possible on Clouds page
CVE-2024-363660.030.38May 29, 2024In JetBrains TeamCity before 2022.04.7, 2022.10.6, 2023.05.6, 2023.11.5 an XSS could be executed via certain report grouping and filtering operations
CVE-2025-311400.020.30Mar 27, 2025In JetBrains TeamCity before 2025.03 stored XSS was possible on Cloud Profiles page
CVE-2025-244590.020.22Jan 21, 2025In JetBrains TeamCity before 2024.12.1 reflected XSS was possible on the Vault Connection page
CVE-2024-363720.020.22May 29, 2024In JetBrains TeamCity before 2023.05.6 reflected XSS on the subscriptions page was possible

Page 1 of 9