ZeroHour

CVE-2026-65618

CVSS 3.1
6.5 medium
EPSS
<1%p11
Published
()
Modified
Description

Improper URL validation when handling specific URLs, allows an attacker, under certain conditions, to make unauthorized requests from JFrog Artifactory, potentially exposing internal services and cached response data.

Vendors
jfrog
Products
artifactory
Weakness
CWE-918
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news