CVE-2024-2248
EUVD-2024-2720415.05.2024, 13:15
A Header Injection vulnerability in the JFrog platform in versions below 7.85.0 (SaaS) and 7.84.7 (Self-Hosted) may allow threat actors to take over the end user's account when clicking on a specially crafted URL sent to the victim’s user email.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| jfrog | artifactory | 𝑥 < 7.85.0(\SaaS\) | ADP |
| jfrog | artifactory | 𝑥 < 7.84.7\(Selff-Hosted\) | ADP |
Common Weakness Enumeration