JFrog Artifactory Self-Hosted versions below 7.77.3, are vulnerable to sensitive information disclosure whereby a low-privileged authenticated user can read the proxy configuration.
This does not affect JFrog cloud deployments.
References
Configurations
No configuration.
History
No history.
Information
Published : 2024-04-15 08:15
Updated : 2024-04-15 13:15
NVD link : CVE-2024-3505
Mitre link : CVE-2024-3505
CVE.ORG link : CVE-2024-3505
JSON object : View
Products Affected
No product.
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor