An authenticated user may write data outside the intended Docker cache path under specific remote-repository conditions.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 17.9%
CVSS Severity
CVSS v3 Score 5.3
Proposed Action
JFrog Artifactory contains an improper limitation of a pathname to a restricted directory vulnerability. This can allow an authenticated user to write data outside the intended Docker cache path under specific remote-repository conditions.