CVE-2024-36364: JetBrains TeamCity
Medium severity, CVSS 6.5. EPSS: 0.3% chance of exploitation in the next 30 days.
In JetBrains TeamCity before 2022.04.7, 2022.10.6, 2023.05.6, 2023.11.5 improper access control in Pull Requests and Commit status publisher build features was possible
Affected products
- JetBrains TeamCity: before 2022.04.7 (fixed in 2022.04.7); from 2022.10, before 2022.10.6 (fixed in 2022.10.6); from 2023.05, before 2023.05.6 (fixed in 2023.05.6); from 2023.11, before 2023.11.5 (fixed in 2023.11.5)
Published 2024-05-29. Last modified 2026-06-17.