XSS via OAuth Provider Configuration in JetBrains TeamCity Before 2022.04.6, 2022.10.5, 2023.05.5, and 2023.11.5
CVE-2024-36368
5.4MEDIUM
What is CVE-2024-36368?
In JetBrains TeamCity before 2022.04.7, 2022.10.6, 2023.05.6, 2023.11.5 reflected XSS via OAuth provider configuration was possible
Affected Version(s)
TeamCity 0 < 2022.04.7, 2022.10.6, 2023.05.6, 2023.11.5