CVE-2026-69106: Potential cache poisoning in JFrog Artifactory
Published Aug 12, 2026
·Updated
A low-privileged user may poison cached artifact metadata under specific conditions, potentially causing consumers to retrieve untrusted content.
Affected Software
1 affected component
JFrog Artifactory
Event History
Aug 12, 2026
CVE Published
via MITRE·05:48 PM
Data Sourced
via MITRE·05:48 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-69106?
CVE-2026-69106 has a high severity rating of 8.8.
2
How do I fix CVE-2026-69106?
To fix CVE-2026-69106, ensure that all user inputs are properly validated and limit access for low-privilege users.
3
What are the implications of CVE-2026-69106?
CVE-2026-69106 could allow a low-privileged user to poison cached artifact metadata, leading to consumers retrieving untrusted content.
4
Which software is affected by CVE-2026-69106?
CVE-2026-69106 affects JFrog Artifactory.
5
What is the potential impact of CVE-2026-69106 on security?
The potential impact of CVE-2026-69106 is high, as it could compromise the integrity and trust of cached artifacts.