Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jxpv-4jjx-62cv

Опубликовано: 27 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

JFrog Artifactory support for Terraform remote repositories was found to be susceptible to Server-Side Request Forgery (SSRF). An authenticated user - or, if anonymous access is enabled on the repository, an unauthenticated user - could cause Artifactory to issue outbound HTTP requests to arbitrary destinations and receive the response content.

JFrog Artifactory support for Terraform remote repositories was found to be susceptible to Server-Side Request Forgery (SSRF). An authenticated user - or, if anonymous access is enabled on the repository, an unauthenticated user - could cause Artifactory to issue outbound HTTP requests to arbitrary destinations and receive the response content.

EPSS

Процентиль: 12%
0.00215
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-918

Связанные уязвимости

CVSS3: 6.5
nvd
11 дней назад

JFrog Artifactory support for Terraform remote repositories was found to be susceptible to Server-Side Request Forgery (SSRF). An authenticated user - or, if anonymous access is enabled on the repository, an unauthenticated user - could cause Artifactory to issue outbound HTTP requests to arbitrary destinations and receive the response content.

EPSS

Процентиль: 12%
0.00215
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-918