CVE-2023-42509

JFrog Artifactory later than version 7.17.4 but prior to version 7.77.0 is vulnerable to an issue whereby a sequence of improperly handled exceptions in repository configuration initialization steps may lead to exposure of sensitive data.
Configurations

Configuration 1 (hide)

cpe:2.3:a:jfrog:artifactory:*:*:*:*:*:-:*:*

History

11 Mar 2025, 16:57

Type Values Removed Values Added
First Time Jfrog artifactory
Jfrog
References () https://jfrog.com/help/r/jfrog-release-information/jfrog-security-advisories - () https://jfrog.com/help/r/jfrog-release-information/jfrog-security-advisories - Vendor Advisory
CPE cpe:2.3:a:jfrog:artifactory:*:*:*:*:*:-:*:*

21 Nov 2024, 08:22

Type Values Removed Values Added
References () https://jfrog.com/help/r/jfrog-release-information/jfrog-security-advisories - () https://jfrog.com/help/r/jfrog-release-information/jfrog-security-advisories -

08 Mar 2024, 14:02

Type Values Removed Values Added
Summary
  • (es) JFrog Artifactory posterior a la versión 7.17.4 pero anterior a la versión 7.77.0 es vulnerable a un problema por el cual una secuencia de excepciones manejadas incorrectamente en los pasos de inicialización de la configuración del repositorio puede provocar la exposición de datos confidenciales.

07 Mar 2024, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-03-07 14:15

Updated : 2025-03-11 16:57


NVD link : CVE-2023-42509

Mitre link : CVE-2023-42509

CVE.ORG link : CVE-2023-42509


JSON object : View

Products Affected

jfrog

  • artifactory
CWE
CWE-755

Improper Handling of Exceptional Conditions