#1
The Hacker News
general
August 06, 2026 at 06:51 UTC
CISA Flags TeamCity CVE-2026-63077 RCE Flaw Under Active Exploitation in the Wild
By [email protected] (The Hacker News)
AI Summary
CISA has added CVE-2026-63077, a critical (CVSS 9.8) deserialization-of-untrusted-data flaw in JetBrains TeamCity on-premise servers, to its Known Exploited Vulnerabilities catalog following confirmed active exploitation. The unauthenticated RCE vulnerability allows attackers with network access to a TeamCity server to execute arbitrary code without credentials, making unpatched CI/CD infrastructure an immediate high-priority target for security teams.
Relevance score: 92.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →