CISA, JetBrains TeamCity의 CVE-2026-63077 원격코드실행 취약점을 경고。
CISA는 JetBrains TeamCity의 온프레미스 버전에 영향을 미치는 CVE-2026-63077 취약점이 활성 공격에 노출되고 있다고 경고했다. 이 취약점은 신뢰할 수 없는 데이터의 역직렬화로 인해 발생하며, 인증되지 않은 공격자가 TeamCity 서버에 접근할 수 있는 위험이 있다. CVSS 점수는 9.8로, 매우 심각한 수준이다.
CISA warns about active exploitation of CVE-2026-63077 RCE vulnerability in JetBrains TeamCity.
CISA has alerted that the CVE-2026-63077 vulnerability, affecting on-premise versions of JetBrains TeamCity, is being actively exploited in the wild. This flaw involves deserialization of untrusted data, allowing unauthenticated attackers to gain access to a TeamCity server. The CVSS score for this vulnerability is 9.8, indicating a very critical severity level.