Home / Companies / JetBrains / Blog / Post Details
Content Deep Dive

Critical Security Issue Affecting TeamCity On-Premises (CVE-2026-63077) – Update to 2025.11.7 or 2026.1.3 Now - The JetBrains Blog

Blog post from JetBrains

Post Details
Company
Date Published
Author
Daniel Gallo
Word Count
769
Company Posts That Month
64
Language
American English
Hacker News Points
-
Post removed?
No
Summary

A critical security vulnerability identified as CVE-2026-63077 has been discovered in all versions of TeamCity On-Premises, which could allow an unauthenticated attacker to bypass authentication checks and execute arbitrary operating system commands. Users are advised to update to versions 2025.11.7 or 2026.1.3, where the issue has been resolved, or apply a security patch plugin if an update is not possible. This vulnerability, reported privately in July 2026, does not affect TeamCity Cloud customers, as they have already received the necessary measures. To mitigate risks, it's recommended to limit network access to trusted networks and run TeamCity servers with minimal privileges on dedicated hosts. There are currently no reports of this vulnerability being actively exploited.

Trends Found in this Post

No tracked trend matches for this post yet.

Use This Data

Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.