Beveiligingsadvies

CVE-2026-70550

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-08-25 15:22:53
Laatst bijgewerkt 2026-08-26 19:47:11
Toegewezen door JFROG
CVSS-score 6.5
Status PUBLISHED

Beschrijving

An authorization weakness in JFrog Artifactory Composer repository handling may allow an authenticated user, under specific conditions, to read package metadata from repositories they are not authorized to read. The issue affects confidentiality and has been addressed in fixed Artifactory versions.