CVE-2024-2247: JFrog Artifactory

Medium severity, CVSS 6.1. EPSS: 0.5% chance of exploitation in the next 30 days.

JFrog Artifactory versions below 7.77.7, 7.82.1, are vulnerable to DOM-based cross-site scripting due to improper handling of the import override mechanism.

Affected products

  • JFrog Artifactory: up to and including 7.77.7

Published 2024-03-13. Last modified 2026-06-17.