The company has patched a critical pre-authentication flaw in TeamCity that could let attackers execute arbitrary commands, expose credentials, and compromise supply chains on self-hosted servers.
Hackers are exploiting a critical, unpatched remote code execution (RCE) vulnerability in Fastjson without authentication.