CVE-2025-46432

CVSS 3.1 Score 4.3 of 10 (medium)

Details

Published Apr 25, 2025
Updated: Apr 29, 2025
CWE ID 532

Summary

CVE-2025-46432 is a vulnerability affecting JetBrains TeamCity prior to version 2025.03.1. This issue allows base64-encoded credentials to be exposed in build logs, posing a significant security risk. An attacker with access to the build logs could potentially extract and use these credentials for unauthorized access. TeamCity users are urged to upgrade to the latest version to mitigate this issue. The exposure of base64-encoded credentials can enable unauthorized account access and compromise the security of the TeamCity environment.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share