ZeroHour

CVE-2023-42662

CVSS 3.1
6.5 medium
EPSS
<1%p40
Published
()
Modified
Description

JFrog Artifactory versions 7.59 and above, but below 7.59.18, 7.63.18, 7.68.19, 7.71.8 are vulnerable to an issue whereby user interaction with specially crafted URLs could lead to exposure of user access tokens due to improper handling of the CLI / IDE browser based SSO integration.

Vendors
jfrog
Products
artifactory
Weakness
CWE-287
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.