CISA Flags TeamCity CVE-2026-63077 RCE Flaw Under Active Exploitation in the Wild

Read full story on The Hacker News
Share
CISA Flags TeamCity CVE-2026-63077 RCE Flaw Under Active Exploitation in the Wild
AI disclosure

Summary

A newly patched security flaw impacting on-premise versions of JetBrains TeamCity has come under active exploitation in the wild, according to the U.S. Cybersecurity and Infrastructure Security Agency (CISA). The vulnerability in question is CVE-2026-63077 (CVSS score: 9.8), a case of deserialization of untrusted data that could allow an unauthenticated attacker with access to a TeamCity server

Original reporting

Open original source

Related coverage

Read full article on The Hacker News

Get the AFBytes Brief

Major stories, AI-assisted analysis, and what to watch next. Free, monthly, unsubscribe anytime.