Path traversal in Artifactory - CVE-2026-66384
Published: August 31, 2026
Vulnerability details
The vulnerability allows a remote user to write data outside the intended Docker cache path.
The vulnerability exists due to improper limitation of a pathname to a restricted directory in the Docker cache path handling for remote repositories when processing authenticated operations under specific remote-repository conditions. A remote user can write crafted data to cause writes outside the intended Docker cache path.
Only authenticated access and specific remote-repository conditions are required for exploitation.