GHSA-3q94-gprh-7pwmHighCVSS 7.5

JFrog Artifactory could return an internal anonymous-user token to an unauthenticated caller when...

Published
August 12, 2026
Last Modified
August 12, 2026

🔗 CVE IDs covered (1)

📋 Description

JFrog Artifactory could return an internal anonymous-user token to an unauthenticated caller when anonymous access is disabled, potentially exposing sensitive resources.

🔗 References (4)