JetBrains vendor intelligence

JetBrains Known Exploited Vulnerabilities

Track evidence-backed exploitation affecting JetBrains products, including the gap beyond CISA KEV, confidence assessments, sensor observations, and practical response context.

Total KEVs
4
Known exploited vulnerabilities affecting JetBrains products
In CISA KEV
4
Records also listed in the official catalog
Beyond CISA KEV
0
Additional exploited CVEs absent from CISA KEV
Sensor Observed
0
JetBrains KEVs with sensor-observed exploitation activity

The catalog gap matters for JetBrains exposure

All four exploited JetBrains CVEs tracked here are also listed in CISA KEV. Use product ownership and sensor evidence to prioritize within this portfolio.

100%
Covered by CISA
0%
Beyond CISA
1
Product families

Attested JetBrains CVEs

Search the exploited-vulnerability portfolio, then narrow it to official CISA coverage or the additional records KEV Intelligence tracks beyond the catalog.

How exploitation is verified
CVE / description Product Confidence CISA KEV Added
CVE-2026-63077

In JetBrains TeamCity before 2026.1.3, 2025.11.7 unauthenticated remote code execution was possible via the agent polling protocol

TeamCity Confirmed In CISA 05 Aug 2026
CVE-2024-27199

In JetBrains TeamCity before 2023.11.4 path traversal allowing to perform limited admin actions was possible

TeamCity Confirmed In CISA 24 Apr 2025
CVE-2023-42793

In JetBrains TeamCity before 2023.05.4 authentication bypass leading to RCE on TeamCity Server was possible

TeamCity Confirmed In CISA 04 Oct 2023
CVE-2024-27198

In JetBrains TeamCity before 2023.11.4 authentication bypass allowing to perform admin actions was possible

TeamCity Confirmed In CISA 07 Mar 2024

Showing 4 of 4 JetBrains known exploited vulnerabilities.

Recurring weakness patterns

Authentication bypass using an alternate path or channel, relative path traversal, and missing authentication for critical function account for four mapped occurrences across this JetBrains KEV portfolio.

Browse all KEVs →

Early warning alerts

Get alerts on high-impact exploitation

Receive curator-selected alerts when exploitation activity warrants attention. Each alert includes the evidence and context needed to decide what requires attention now.

Occasional high-impact alerts. Unsubscribe anytime. See our Privacy Policy.