Broken Access Control in JFrog Artifactory Affects Multiple Versions
CVE-2021-41834
5.3MEDIUM
What is CVE-2021-41834?
JFrog Artifactory versions prior to 7.28.0 and 6.23.38 are susceptible to a Broken Access Control vulnerability. This flaw allows low-privileged users to exploit the copy functionality, enabling them to read and duplicate any artifact within the Artifactory deployment. The vulnerability stems from inadequate validation of permissions, which could lead to unauthorized access to sensitive artifacts.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Artifactory 7.x < 7.28.0
Artifactory 6.x < 6.23.38
