CyberRota Analysis
AI-GeneratedJetBrains TeamCity versions prior to 2026.2.1 are vulnerable due to inadequate validation of Git submodule URLs, which could allow unauthorized access to local repositories on the server. This vulnerability poses a risk of sensitive data exposure, making it critical for organizations using affected versions to prioritize remediation. Teams managing CI/CD pipelines and those handling sensitive codebases should address this issue promptly to mitigate potential data breaches.
CVE
CVE-2026-106219
Severity
MEDIUM
CVSS
6.5
EPSS
0.62%
Original NVD Description
In JetBrains TeamCity before 2026.2.1 missing validation of Git submodule URLs allowed reading local repositories on the server
Related CVEs
Other vulnerabilities affecting the same vendor(s)