What is CVE-2026-63077?
In JetBrains TeamCity before 2026.1.3, 2025.11.7 unauthenticated remote code execution was possible via the agent polling protocol
Timeline
- 2026-07-27Published to the U.S. National Vulnerability Database (NVD)
- 2026-08-05Added to the CISA Known Exploited Vulnerabilities (KEV) catalog
- 2026-08-06NVD record last updated
- 2026-08-07First covered in a defend.network daily briefing
- 2026-08-08CISA federal remediation deadline (BOD 22-01)
CISA Known Exploited Vulnerability
JetBrains TeamCity Deserialization of Untrusted Data Vulnerability
Affected product
JetBrains TeamCity
Remediation Steps
- Check CISA's Known Exploited Vulnerabilities catalog for confirmation that this CVE affects your systems
- Apply the vendor patch immediately
- Monitor systems for evidence of exploitation
- Review access logs for suspicious activity on affected assets
References
Referenced in our briefings & reports
- Vulnerability Priority Report – Week 2 of August 2026 (August 10 – 16)
- Vulnerability Priority Report – Week 1 of August 2026 (August 3 – 9)
- Vulnerability Priority Report – Week 4 of July 2026 (July 27 – August 2)
- npm malware cluster, Metabase zero-day exploited, UNC6671 rebrands (2026-08-08)
- Linux KVM escape, Cisco SD-WAN patches, Spectre v2 defenses bypassed (2026-08-07)
Browse all tracked CVEs in the defend.network CVE database →
🤖 This CVE page is generated by defend.network from NVD, CISA KEV, EPSS, and our verified daily briefings. Severity and exploitation data come from official sources; always verify remediation steps against the official vendor advisory before acting in production.