Sensitive Data Exposure in JFrog Artifactory by JFrog
CVE-2021-46687
4.9MEDIUM
What is CVE-2021-46687?
JFrog Artifactory, prior to versions 7.31.10 and 6.23.38, is susceptible to a vulnerability that allows unauthorized access to sensitive information through the Project Administrator REST API. This issue may lead to exposure of critical data, impacting the overall security posture of deployments using affected versions. It is crucial for users to upgrade their installations to the latest versions to mitigate this risk.
Affected Version(s)
JFrog Artifactory JFrog Artifactory versions before 7.31.10 < 7.x
JFrog Artifactory JFrog Artifactory versions before 6.23.38 < 6.x