Unrated severityNVD Advisory· Published Jul 6, 2022· Updated Aug 4, 2024
CVE-2021-45721
CVE-2021-45721
Description
JFrog Artifactory prior to version 7.29.8 and 6.23.38 is vulnerable to Reflected Cross-Site Scripting (XSS) through one of the XHR parameters in Users REST API endpoint. This issue affects: JFrog JFrog Artifactory JFrog Artifactory versions before 7.36.1 versions prior to 7.29.8; JFrog Artifactory versions before 6.23.41 versions prior to 6.23.38.
Affected products
2- JFrog/JFrog Artifactoryv5Range: JFrog Artifactory versions before 7.36.1
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- www.jfrog.com/confluence/display/JFROG/CVE-2021-45721%3A+Cross-Site+Script+%28XSS%29+on+User+REST+APImitrex_refsource_MISC
- www.jfrog.com/confluence/display/JFROG/JFrog+Security+Advisoriesmitrex_refsource_MISC
News mentions
0No linked articles in our index yet.