ARTIFACTORY: Is the JFrog Platform affected by CVE-2022-42889?

AuthorFullName__c
Nir Shervi
articleNumber
000005440
FirstPublishedDate
2022-10-23T10:34:20Z
lastModifiedDate
2022-10-23

ARTIFACTORY: Is the JFrog Platform affected by CVE-2022-42889?

Introduction:

NVD published on 10.13.2022 a new vulnerability,  CVE-2022-42889, that considers CRITICAL as for 22.10.2022.
In order to receive more information regarding the above vulnerability, kindly refer to the following link that will direct you to the NVD site.

Impact:

JFrog Platform is not affected, since vulnerable packages are not in use.  

For more information regarding CVEs that do not impact Artifactory kindly refer to the following link.