An authenticated user without repository read permission may access package metadata under specific conditions.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 12 Aug 2026 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An authenticated user without repository read permission may access package metadata under specific conditions. | |
| Title | Potential unauthorized metadata exposure in JFrog Artifactory | |
| Weaknesses | CWE-862 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: JFROG
Published:
Updated: 2026-08-12T15:18:29.120Z
Reserved: 2026-08-04T18:29:25.512Z
Link: CVE-2026-70547
No data.
Status : Received
Published: 2026-08-12T16:17:21.440
Modified: 2026-08-12T16:17:21.440
Link: CVE-2026-70547
No data.
OpenCVE Enrichment
No data.
Weaknesses