CVE-2022-24342
In JetBrains TeamCity before 2021.2.1, URL injection leading to CSRF was possible.
- Affected products
- Teamcity
- Jetbrains Teamcity
- < 2021.2.1
- Fix
- Available
- CVSS 3.1
- 8.8 HIGH
- EPSS
- 3.3% (87th percentile)
- Weakness
- CWE-352
- NVD status
- Modified
- Published
- 2022-02-25
CVE-2022-24342 at NVD
2 known exploits for CVE-2022-24342
Proof-of-concept code and exploit modules indexed by Sploitus