🔴
CISA KEV Alert — Active Real-World Exploitation Confirmed
This vulnerability is in the CISA Known Exploited Vulnerabilities catalog and is being actively exploited right now.
JetBrains TeamCity Path Traversal Auth Bypass (CVE-2024-27199) | MSSP Advisory
High🔴 KEV ALERT
DateMay 6, 2026
CVECVE-2024-27199
CVSS Score7.3
Affectedteamcity
📋Executive Summary
CISA flagged CVE-2024-27199, a path traversal vulnerability in JetBrains TeamCity that allows limited admin actions without proper authentication. This CVE has known ransomware exploitation and carries a 2026 compliance deadline for federal agencies.
⚠️Why It Matters for MSSPs
TeamCity is a popular CI/CD platform in many client environments, making this both a direct threat to MSSP development pipelines and a client advisory obligation since ransomware groups are actively exploiting this flaw. Your clients expect you to know about threats hitting their development infrastructure before they become breaches.
✅Recommended Action
Audit all client environments for TeamCity instances within 24 hours and verify current patch status against vendor guidance. Contact clients running affected versions immediately with patch requirements and timeline, as this carries both ransomware risk and federal compliance implications for any clients in regulated industries.
🔒Get your first advisory free →
Partner content — get access free
The recommended action is included in your white-labeled advisory — ready to send to clients under your name.
🏷️Threat Category
Vulnerability Disclosure
Partner MSSPs receive the full advisory — talking points, actions, and social posts — under their own brand.