Critical severity9.8OSV Advisory· Published Apr 16, 2019· Updated Jun 17, 2026
CVE-2018-19971
CVE-2018-19971
Description
JFrog Artifactory Pro 6.5.9 has Incorrect Access Control.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Range: 5.0.1, 5.1.0, 5.1.2, …
cpe:2.3:a:jfrog:artifactory:6.5.9:*:*:*:pro:*:*:*+ 1 more
- cpe:2.3:a:jfrog:artifactory:6.5.9:*:*:*:pro:*:*:*
- (no CPE)range: = 6.5.9
Patches
Vulnerability mechanics
References
5- packetstormsecurity.com/files/152137/JFrog-Artifactory-Pro-6.5.9-Signature-Validation.htmlnvdExploitThird Party AdvisoryVDB Entry
- seclists.org/fulldisclosure/2019/Mar/34nvdExploitMailing ListThird Party Advisory
- lists.openwall.net/full-disclosure/2019/03/19/3nvdExploitMailing ListThird Party Advisory
- www.securityfocus.com/bid/107518nvdThird Party AdvisoryVDB Entry
- bintray.com/jfrog/artifactory-pro/jfrog-artifactory-pro-zip/6.5.13nvdProductThird Party Advisory
News mentions
0No linked articles in our index yet.