CISA Flags TeamCity CVE202663077 RCE Flaw Under Active Exploitation in the Wild
News Source : Internet
News Summary
- The vulnerability in question is CVE-2026-63077 (CVSS score: 9.8), a case of deserialization of untrusted data.
- A successful attack can expose TeamCity data, configurations, and stored credentials, modify server state, and potentially compromise the integrity of build artifacts and downstream CI/CD pipelines.
- The deadline by which federal agencies must apply software patches or mitigations is August 8, 2026.
A newly patched security flaw impacting onpremise versions of JetBrains TeamCity has come under active exploitation in the wild, according to the U.S.
Never miss a story from us, subscribe to our newsletter