JetBrains released fixes for two security vulnerabilities affecting IntelliJ IDEA and TeamCity, including CVE-2026-59792, a path traversal flaw in IntelliJ IDEA that can lead to remote code execution. The issue stems from project workspace ID handling and affects versions before 2026.1.4 and 2026.2. The vulnerability is classified as CWE-23 and carries a high-severity CVSS 9.6 rating, with potential for significant confidentiality and integrity impact.
JetBrains also patched CVE-2026-59794, a stored cross-site scripting flaw in TeamCity caused by unsanitized agent-reported data on the cloud profile page. That issue affects versions before 2026.1.2 and is rated high severity. Public reporting said no in-the-wild exploitation had been confirmed at the time of disclosure, but the flaws pose risk to developer endpoints and CI/CD environments, prompting organizations using the affected products to update to the fixed releases published on JetBrains' security advisories page.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
3 events from the most recent confirmed update back to the earliest known activity.
JetBrains patched several additional vulnerabilities across TeamCity and YouTrack, including TeamCity flaws enabling arbitrary file access, a second stored XSS issue, and improper authorization that could allow unauthorized pipeline modifications. The company also fixed a low-severity CSS injection issue in YouTrack related to Mermaid diagram rendering.
JetBrains released a fix for CVE-2026-59794, a stored XSS issue in TeamCity's cloud profile page caused by unsanitized agent-reported data. The vulnerability affects versions before 2026.1.2 and was fixed in TeamCity 2026.1.2.
JetBrains published fixes for CVE-2026-59792, a path traversal flaw in IntelliJ IDEA's project workspace ID handling that can lead to remote code execution. The issue affects versions before 2026.1.4 and 2026.2, and was fixed in IntelliJ IDEA 2026.1.4 and 2026.2.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
6 references tracked. Mallory keeps watching after this page renders.
malware.news
Open sourcecyber.gc.ca
Open sourcecybersecuritynews.com
Open sourcethreataft.com
Open sourcecvefeed.io
Open sourcejetbrains.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.