Input validation error in JFrog Artifactory - CVE-2024-6915
Published: August 31, 2026
Vulnerability details
The vulnerability allows a remote user to poison the cache.
The vulnerability exists due to improper input validation in remote repositories when handling cacheable repository interactions. A remote user can submit crafted content to poison the cache.
Exploitation requires anonymous access or deploy/cache permissions for remote repositories.