ARTIFACTORY: Is the JFrog Platform affected by CVE-2022-42889?

Nir Shervi
2023-01-22 11:06

Introduction:

NVD published on 10.13.2022 a new vulnerability,  CVE-2022-42889, that considers CRITICAL as for 22.10.2022.
In order to receive more information regarding the above vulnerability, kindly refer to the following link that will direct you to the NVD site.

Impact:

JFrog Platform is not affected, since vulnerable packages are not in use.  

For more information regarding CVEs that do not impact Artifactory kindly refer to the following link.