CVE Tools
Back to feed
Patch released TeamCity On-Premises rce JetBrains web-app

JetBrains fixes critical unauthenticated RCE in TeamCity On-Premises (CVE-2026-63077)

Help Net Security·By Zeljka Zorz··2 min read
CVE Tools coverage

JetBrains has addressed a high-severity remote code execution flaw (CVE-2026-63077) impacting its self-hosted TeamCity On-Premises product. The vulnerability allows attackers to bypass authentication and execute arbitrary commands on the server, potentially leading to full system compromise. Admins are advised to update to version 2025.11.7 or 2026.1.3 immediately or apply the provided security patch plugin for older versions. JetBrains confirmed no active exploitation attempts have been observed.