CVE-2026-66384
MEDIUMAn authenticated user may write data outside the intended Docker cache path under specific remote-repository conditions.
Published: 8/12/2026Modified: 8/28/2026
Related Intelligence (0)
No articles currently reference this CVE.
References (5)
https://docs.jfrog.com/releases/docs/artifactory-self-managed-releasesRelease NotesVendor Advisoryhttps://docs.jfrog.com/releases/docs/jfrog-security-advisoriesVendor Advisoryhttps://cdn.openai.com/pdf/67869394-cb91-4c12-888c-5cbd85c7814c/OpenAI-Hugging-Face%20Incident-Technical-Report.pdfTechnical Descriptionhttps://openai.com/index/hugging-face-incident-and-the-road-ahead/Third Party Advisoryhttps://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-66384US Government Resource