Описание
Improper URL validation when handling specific URLs, allows an attacker, under certain conditions, to make unauthorized requests from JFrog Artifactory, potentially exposing internal services and cached response data.
Ссылки
- Release Notes
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 7.133.6 (исключая)
cpe:2.3:a:jfrog:artifactory:*:*:*:*:*:-:*:*
EPSS
Процентиль: 11%
0.00209
Низкий
6.5 Medium
CVSS3
Дефекты
CWE-918
Связанные уязвимости
CVSS3: 6.5
github
11 дней назад
Improper URL validation when handling specific URLs, allows an attacker, under certain conditions, to make unauthorized requests from JFrog Artifactory, potentially exposing internal services and cached response data.
EPSS
Процентиль: 11%
0.00209
Низкий
6.5 Medium
CVSS3
Дефекты
CWE-918