CVE-2026-65922
EUVD-2026-4958327.07.2026, 20:16
An authorization weakness in JFrog Artifactory internal metadata handling could allow a user with limited repository access to write to restricted internal metadata areas under specific conditions. Successful abuse is limited to integrity and availability impact at a low level; confidentiality is not affected.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| jfrog | artifactory | 𝑥 < 7.111.18 |
| jfrog | artifactory | 7.117.0 ≤ 𝑥 < 7.117.25 |
| jfrog | artifactory | 7.125.0 ≤ 𝑥 < 7.125.18 |
| jfrog | artifactory | 7.133.0 ≤ 𝑥 < 7.133.27 |
| jfrog | artifactory | 7.146.0 ≤ 𝑥 < 7.146.34 |
| jfrog | artifactory | 7.161.0 ≤ 𝑥 < 7.161.15 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration