Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-8290 | In JetBrains TeamCity before 2025.03 stored XSS was possible on Cloud Profiles page |
| Link | Providers |
|---|---|
| https://www.jetbrains.com/privacy-security/issues-fixed/ |
|
Fri, 16 May 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Jetbrains
Jetbrains teamcity |
|
| CPEs | cpe:2.3:a:jetbrains:teamcity:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Jetbrains
Jetbrains teamcity |
Thu, 27 Mar 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 27 Mar 2025 11:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In JetBrains TeamCity before 2025.03 stored XSS was possible on Cloud Profiles page | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: JetBrains
Published:
Updated: 2025-03-27T13:16:49.211Z
Reserved: 2025-03-26T16:05:47.479Z
Link: CVE-2025-31140
Updated: 2025-03-27T13:16:39.260Z
Status : Analyzed
Published: 2025-03-27T12:15:14.860
Modified: 2025-05-16T14:51:08.523
Link: CVE-2025-31140
No data.
OpenCVE Enrichment
No data.
EUVD