Artifactory Self-Hosted
by Jfrog
CVEs (2)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2026-68757 | Hig | 0.49 | 7.5 | — | Aug 12, 2026 | A user with access to a valid SAML response may impersonate another user under specific conditions. | ||
| CVE-2024-3505 | Med | 0.28 | 4.3 | 0.00 | Apr 15, 2024 | JFrog Artifactory Self-Hosted versions below 7.77.3, are vulnerable to sensitive information disclosure whereby a low-privileged authenticated user can read the proxy configuration. This does not affect JFrog cloud deployments. |
- risk 0.49cvss 7.5epss —
A user with access to a valid SAML response may impersonate another user under specific conditions.
- risk 0.28cvss 4.3epss 0.00
JFrog Artifactory Self-Hosted versions below 7.77.3, are vulnerable to sensitive information disclosure whereby a low-privileged authenticated user can read the proxy configuration. This does not affect JFrog cloud deployments.