Known vulnerabilities in Artifactory 7.146.7

Vendor: JFrog
Software: Artifactory
Version: 7.146.7
Software CPE: cpe:2.3:a:jfrog:artifactory:*:*:*:*:*:*:*:*
Total vulnerabilities: 38
Public exploits: 0
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Artifactory version 7.146.7 Artifactory 7.146.7 is affected by 38 vulnerabilities: 2 high, 7 medium, 29 low Critical High Medium Low

Vulnerabilities (38)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU146514 - Deserialization of Untrusted Data
CVE-2026-65617
CWE-502 Low
No
No
7.111.18, 7.117.25, 7.125.18, 7.133.27, 7.146.34, 7.161.15 31.08.2026 SB2026083191
#VU146513 - Improper Verification of Cryptographic Signature
CVE-2026-65616
CWE-347 Medium
No
No
7.146.27 31.08.2026 SB20260831103
#VU146512 - Exposure of sensitive information to an unauthorized actor
CVE-2026-42017
CWE-200 Medium
No
No
7.133.21, 7.146.8 31.08.2026 SB2026083194
#VU146504 - Improper input validation
CVE-2026-69106
CWE-20 Low
No
No
7.146.28 31.08.2026 SB2026083195
#VU146495 - Improper Authentication
CVE-2026-42018
CWE-287 Medium
No
No
7.111.20, 7.117.27, 7.125.19, 7.133.28, 7.146.8 31.08.2026 SB2026083194
#VU146494 - Missing Authorization
CVE-2026-69107
CWE-862 Low
No
No
7.104.16, 7.111.14, 7.117.21, 7.125.14, 7.133.21, 7.146.8 31.08.2026 SB2026083194
#VU146490 - Server-Side Request Forgery (SSRF)
CVE-2026-70548
CWE-918 Low
No
No
7.146.36, 7.161.19 31.08.2026 SB2026083193
#VU146489 - Missing Authorization
CVE-2026-70550
CWE-862 Low
No
No
7.146.36, 7.161.19 31.08.2026 SB2026083193
#VU146488 - Server-Side Request Forgery (SSRF)
CVE-2026-70551
CWE-918 Low
No
No
7.146.36, 7.161.19 31.08.2026 SB2026083193
#VU146487 - Improper Authentication
CVE-2026-82329
CWE-287 High
No
No
7.111.21, 7.117.28, 7.125.20, 7.133.29, 7.146.38, 7.161.20 31.08.2026 SB2026083192
#VU146486 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2026-66381
CWE-22 Low
No
No
7.146.35, 7.161.16 31.08.2026 SB2026083190
#VU146485 - Server-Side Request Forgery (SSRF)
CVE-2026-65925
CWE-918 Low
No
No
7.111.18, 7.117.25, 7.125.18, 7.133.27, 7.146.34, 7.161.15 31.08.2026 SB2026083191
#VU146484 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2026-65921
CWE-22 Low
No
No
7.111.18, 7.117.25, 7.125.18, 7.133.27, 7.146.34, 7.161.15 31.08.2026 SB2026083191
#VU146483 - Missing Authorization
CVE-2026-65922
CWE-862 Low
No
No
7.111.18, 7.117.25, 7.125.18, 7.133.27, 7.146.34, 7.161.15 31.08.2026 SB2026083191
#VU146482 - Server-Side Request Forgery (SSRF)
CVE-2026-65923
CWE-918 Low
No
No
7.111.18, 7.117.25, 7.125.18, 7.133.27, 7.146.34, 7.161.15 31.08.2026 SB2026083191
#VU146481 - Exposure of sensitive information to an unauthorized actor
CVE-2026-66018
CWE-200 Low
No
No
7.146.34, 7.161.15 31.08.2026 SB2026083191
#VU146480 - Improper Authentication
CVE-2026-66014
CWE-287 Low
No
No
7.111.18, 7.117.25, 7.125.18, 7.133.27, 7.146.34, 7.161.15 31.08.2026 SB2026083191
#VU146479 - Improper Privilege Management
CVE-2026-66015
CWE-269 Medium
No
No
7.146.34, 7.161.15 31.08.2026 SB2026083191
#VU146478 - Server-Side Request Forgery (SSRF)
CVE-2026-65924
CWE-918 Low
No
No
7.111.18, 7.117.25, 7.125.18, 7.133.27, 7.146.34, 7.161.15 31.08.2026 SB2026083191
#VU146477 - Missing Authorization
CVE-2026-66379
CWE-862 Low
No
No
7.146.35, 7.161.16 31.08.2026 SB2026083190


Showing elements 1 - 20 out of 38