sMTP Injection Vulnerability in JetBrains TeamCity
CVE-2025-57733

5.5MEDIUM

Key Information:

Vendor

Jetbrains

Status
Vendor
CVE Published:
20 August 2025

What is CVE-2025-57733?

An sMTP injection vulnerability in JetBrains TeamCity prior to version 2025.07.1 allows attackers to manipulate email content. This exploitation can lead to unauthorized changes in the email messages sent by the application, potentially compromising communication integrity and user trust. Responsible management of email content is crucial in maintaining security within software development environments.

Affected Version(s)

TeamCity 0 < 2025.07.1

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.