CyberRota Analysis
AI-GeneratedJetBrains TeamCity versions prior to 2026.1.2 are vulnerable to stored cross-site scripting (XSS) attacks through unauthenticated agent registration, allowing attackers to inject malicious scripts that could be executed in the context of other users. This vulnerability poses a significant risk to the integrity and confidentiality of user data, making it critical for organizations using affected versions to prioritize immediate updates to mitigate potential exploitation.
CVE
CVE-2026-59795
Severity
HIGH
CVSS
8.1
EPSS
0.26%
Original NVD Description
In JetBrains TeamCity before 2026.1.2 stored XSS via unauthenticated agent registration was possible
Related CVEs
Other vulnerabilities affecting the same vendor(s)