cve.li

Recent

CVE-2026-65922CWE-862

Potential unauthorized modification of Artifactory internal metadata

Published 2026-07-27 by JFROG

CVE-2026-65923CWE-918

Potential server-side request forgery in Artifactory Ansible repository handling

Published 2026-07-27 by JFROG

CVE-2026-59727CWE-79CWE-83CWE-116

Astro: Cross-site scripting via unescaped transition:* directive values on hydrated islands

Published 2026-07-27 by GitHub_M

CVE-2026-59729CWE-79

Astro: XSS via unescaped spread attribute names in renderHTMLElement (incomplete fix for CVE-2026-54298)

Published 2026-07-27 by GitHub_M

CVE-2026-65617CWE-502

Potential remote code execution on an Artifactory package service container.

Published 2026-07-27 by JFROG

CVE-2026-65924CWE-918

Server-Side Request Forgery (SSRF) via Terraform Remote repository

Published 2026-07-27 by JFROG

CVE-2026-65925CWE-918

Server-Side Request Forgery (SSRF) via JFrog Artifactory Cargo remote repository

Published 2026-07-27 by JFROG

CVE-2026-65616CWE-347

Potential privilege escalation to JFrog administrator privileges

Published 2026-07-27 by JFROG

CVE-2026-66015CWE-269

JFrog Platform contains an authorization flaw that may allow authenticated privilege escalation.

Published 2026-07-27 by JFROG

CVE-2026-65618CWE-918

Improper URL validation when handling specific URLs Pub, Terraform and Docker packages might lead to SSRF vulnerability

Published 2026-07-27 by JFROG

Load more ↓