CVE-2021-45074
02.03.2022, 22:15
JFrog Artifactory before 7.29.3 and 6.23.38, is vulnerable to Broken Access Control, a low-privileged user is able to delete other known users OAuth token, which will force a reauthentication on an active session or in the next UI session.Enginsight
Vendor | Product | Version |
---|---|---|
jfrog | artifactory | 6.0.0 ≤ 𝑥 < 6.23.38 |
jfrog | artifactory | 7.0.0 ≤ 𝑥 < 7.29.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References