JetBrains has patched CVE-2026-63077, a critical, unauthenticated remote code execution vulnerability in TeamCity On-Premises.

CVE-2026-63077 could let unauthenticated attackers bypass TeamCity checks and run OS commands; JetBrains patched all on-premises versions.

The company has patched a critical pre-authentication flaw in TeamCity that could let attackers execute arbitrary commands, expose credentials, and compromise supply chains on…