JetBrains TeamCity vulnerability allows privilege escalation, API exposure (CVE-2026-44413)

JetBrains has patched a high-severity vulnerability (CVE-2026-44413) in TeamCity, its popular continuous integration and continuous delivery platform, and is urging organizations with on-premises and self-managed deployments to upgrade to the fixed version or implement a security patch. About CVE-2026-44413 CVE-2026-44413 allows for privilege escalation, and may allow attackers to expose some parts of the TeamCity server API to unauthorized users. TeamCity’s REST API is extensive, with many endpoints, some of which may expose sensitive information … More

The post JetBrains TeamCity vulnerability allows privilege escalation, API exposure (CVE-2026-44413) appeared first on Help Net Security.

This article has been indexed from Help Net Security

Read the original article: