CVE-2023-42793: JetBrains TeamCity Authentication Bypass Vulnerability

Critical severity, CVSS 9.8. Actively exploited: in CISA KEV since 2023-10-04. EPSS: 100% chance of exploitation in the next 30 days.

In JetBrains TeamCity before 2023.05.4 authentication bypass leading to RCE on TeamCity Server was possible

Affected products

  • JetBrains TeamCity: before 2023.05.4 (fixed in 2023.05.4)

Published 2023-09-19. Last modified 2026-06-17.