CVE-2026-70547: JFrog Artifactory

Medium severity, CVSS 4.3. EPSS: 0.3% chance of exploitation in the next 30 days.

An authenticated user without repository read permission may access package metadata under specific conditions.

Affected products

  • JFrog Artifactory: from 7.161.0, before 7.161.16 (fixed in 7.161.16)

Published 2026-08-12. Last modified 2026-09-11.