Stored XSS Vulnerability in JetBrains TeamCity Software
CVE-2025-68163
3.5LOW
What is CVE-2025-68163?
A stored cross-site scripting (XSS) vulnerability exists in JetBrains TeamCity versions before 2025.11, specifically impacting the agent push installation page. An attacker could exploit this weakness to execute malicious scripts, potentially affecting users who visit the compromised page. It is crucial for users and organizations utilizing affected versions of TeamCity to apply necessary updates and security patches to mitigate the risks associated with this vulnerability.
Affected Version(s)
TeamCity 0 < 2025.11