← Back

CVE-2023-42662

nvd nist
Published: Mar 7, 2024Modified: Jun 17, 2026

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Exploitability: 2.8 / Impact: 3.6
Source: NVD

Description

JFrog Artifactory versions 7.59 and above, but below 7.59.18, 7.63.18, 7.68.19, 7.71.8 are vulnerable to an issue whereby user interaction with specially crafted URLs could lead to exposure of user access tokens due to improper handling of the CLI / IDE browser based SSO integration.

Affected (4)

Products: Jfrog: Artifactory
1 product
Artifactory
Configuration A
4 vulnerable
Vulnerable SoftwareAffected Versions
Jfrog
From 7.59.0 to 7.59.18
From 7.63.5 to 7.63.18
From 7.68.7 to 7.68.19
From 7.71.2 to 7.71.8

References (2)

Timeline

No history available yet.