CVE-2024-56350

CVSS 3.1 Score 4.3 of 10 (medium)

Details

Published Dec 20, 2024
Updated: Jan 2, 2025
CWE ID 863

Summary

CVE-2024-56350 is a newly disclosed vulnerability in JetBrains TeamCity. Affecting versions before 2024.12, this issue allows unauthorized users to view project credentials, potentially exposing sensitive information. The vulnerability could be exploited through misconfigured access control settings. TeamCity users are strongly advised to update their software to the latest version to mitigate this risk. The exposure of project credentials could lead to serious security breaches, making this a critical patch for all affected organizations.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share