能够读取现有远程版本控制系统(VCS)仓库的用户可以替换其配置的 origin,或提供一个绝对路径的 VCS 数据 URL。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| jfrog | artifactory | 7.161.0< 7.161.19 |
affected |
7.146.0< 7.146.36 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| jfrog | artifactory | 7.161.0 ~ 7.161.19 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-69104 | 7.6 HIGH | Potential unauthorized repository migration in JFrog Artifactory |
| CVE-2026-70550 | 6.5 MEDIUM | Potential unauthorized access to private Composer repository metadata in JFrog Artifactory |
| CVE-2026-70548 | 3.5 LOW | SSRF In CocoaPods Via JFrog Artifactory External Dependency |
No comments yet