JFrog Artifactory Improper SSO Mechanism may lead to Exposure of Access Tokens
Vulnerability Description
JFrog Artifactory versions 7.59 and above, but below 7.59.18, 7.63.18, 7.68.19, 7.71.8 are vulnerable to an issue whereby user interaction with specially crafted URLs could lead to exposure of user access tokens due to improper handling of the CLI / IDE browser based SSO integration.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-42662
Credits & Attribution
No credits recorded in the NVD database.
More from JFrog
View All →Affected Vendor
JFrog
View all reports →