CVE Vulnerabilities

CVE-2023-42508

Published: Oct 03, 2023 | Modified: Oct 05, 2023
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

JFrog Artifactory prior to version 7.66.0 is vulnerable to specific endpoint abuse with a specially crafted payload, which can lead to unauthenticated users being able to send emails with manipulated email body.

Affected Software

Name Vendor Start Version End Version
Artifactory Jfrog 7.0.0 (including) 7.66.0 (excluding)

References