PT-2022-9369 · Jfrog · Jfrog Artifactory

Published

2022-07-06

·

Updated

2024-03-06

·

CVE-2021-23163

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions JFrog Artifactory versions prior to 7.33.6 JFrog Artifactory versions prior to 6.23.38
Description The issue affects JFrog Artifactory, making it vulnerable to Cross-Site Request Forgery (CSRF) for specific endpoints.
Recommendations For versions prior to 7.33.6, update to version 7.33.6 or later. For versions prior to 6.23.38, update to version 6.23.38 or later.

Fix

CSRF

Weakness Enumeration

Related Identifiers

BIT-ARTIFACTORY-2021-23163
CVE-2021-23163

Affected Products

Jfrog Artifactory