Back

MEDIUM

Improper URL validation when handling specific URLs Pub, Terraform and Docker packages might lead to SSRF vulnerability

Published Jul 27, 2026

Description

Improper URL validation when handling specific URLs, allows an attacker, under certain conditions, to make unauthorized requests from JFrog Artifactory, potentially exposing internal services and cached response data.

Affected products

Remediation

No remediation recorded yet.

Weaknesses (1)

References (3)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner JFROG
Published Jul 27, 2026
Updated Jul 27, 2026
Reserved Jul 22, 2026
CISA Vulnrichment
Updated Jul 27, 2026
NVD
Status Analyzed
Modified Jul 30, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner JFROG
Published Jul 27, 2026
Updated Jul 27, 2026
Exploited since n/a
EUVD-2026-49574