Critical Alert 1 Active Exploit Detected Today

CVE-2026-63077 JetBrains TeamCity Deserialization of Untrusted Data Vulnerability →
Powered by CVE Watchtower
×
August 7, 2026

CVE Watchtower


← Back to CVE List

CVE-2025-49851NVD

Vulnerability Summary

ControlID iDSecure On-premises versions 4.7.48.0 and prior are vulnerable to an Improper Authentication vulnerability which could allow an attacker to bypass authentication and gain permissions in the product.
Severity Level
HIGH(8.7)
Published Date
Jun 24, 2025
Last Modified
Jul 2, 2025
Exploitation Status
No confirmed exploitation yet
EPSS Score (30-Day)
Data Pending
Root Weakness (CWE)
When an actor claims to have a given identity, the software does not prove or insufficiently proves that the claim is correct.
CVSS v4.0 Base Metrics
Attack VectorNetwork
Attack ComplexityLow
Privileges RequiredNone
User InteractionNone