CyberSecurity News
CISA Flags TeamCity CVE-2026-63077 RCE Flaw Under Active Exploitation in the Wild
AI summary
The US Cybersecurity and Infrastructure Security Agency has reported that a security flaw in on-premise versions of JetBrains TeamCity is being actively exploited. The vulnerability, identified as CVE-2026-63077, has a high CVSS score of 9.8 and involves the deserialization of untrusted data. This could enable an unauthenticated attacker with access to a TeamCity server to carry out remote code execution. The issue has been patched, but its active exploitation in the wild has been confirmed by CISA. The vulnerability affects on-premise TeamCity installations, making them a potential target for attackers.
Vulnerabilities mentioned
This is an AI-generated brief aggregated by HackerFeeds for convenience and grounded in the source’s own summary; the related CVE, threat-group and country data is from HackerFeeds’ own indexes. The original article is the authoritative source — all rights belong to The Hacker News.

