Project Isolation Bypass Vulnerability in JetBrains TeamCity
CVE-2025-59455

4.2MEDIUM

Key Information:

Vendor

Jetbrains

Status
Vendor
CVE Published:
17 September 2025

What is CVE-2025-59455?

A race condition vulnerability exists in JetBrains TeamCity prior to version 2025.07.2, allowing attackers to bypass project isolation mechanisms. This flaw could enable unauthorized access to project data, posing significant risks to user confidentiality and data integrity.

Affected Version(s)

TeamCity 0 < 2025.07.2

References

CVSS V3.1

Score:
4.2
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-59455 : Project Isolation Bypass Vulnerability in JetBrains TeamCity