CVE-2025-67741: JetBrains TeamCity
Medium severity, CVSS 5.4. EPSS: 0.5% chance of exploitation in the next 30 days.
In JetBrains TeamCity before 2025.11 stored XSS was possible via session attribute
Affected products
- JetBrains TeamCity: before 2025.11 (fixed in 2025.11)
Published 2025-12-11. Last modified 2026-10-07.