This post is a follow-up to our July 27, 2026, announcement about CVE-2026-63077. Summary Since our initial announcement on July 27, 2026, we have received reports of active exploitation, as we

Hackers are exploiting CVE-2026-63077, a recently patched JetBrains TeamCity vulnerability, for remote code execution.

CISA says attackers are exploiting TeamCity CVE-2026-63077, an unauthenticated RCE flaw that can expose credentials and compromise build pipelines.