October 4, 2023 · Applied Cybernetics Group
CVE-2023-42793 — JetBrains TeamCity
known ransomware use
JetBrains TeamCity Authentication Bypass Vulnerability
- Added to KEV
2023-10-04- Federal due date
2023-10-25- Vendor
- JetBrains
- Product
- TeamCity
- EPSS
- 99.8th percentile (score 0.929, as of
2026-06-08) - NVD CVSS v3.1
- —
- Ransomware use
- Known
- Upstream
- https://nvd.nist.gov/vuln/detail/CVE-2023-42793
CISA short description
JetBrains TeamCity contains an authentication bypass vulnerability that allows for remote code execution on TeamCity Server.
Required action
Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.