SEPTEMBER 14, 2026
Live Feed
Back to database
Case File

CVE-2026-70548

LOW · CVSS 3.5 EPSS 0.18%

Source: NVD + CISA KEV + EPSS · Published 2026-08-25 · Last synced 2026-09-14

CyberRota Analysis

AI-Generated

A low-level user can exploit a vulnerability in JFrog Artifactory to send requests to remote CocoaPods repositories under certain conditions. Although the severity is rated low, organizations using JFrog Artifactory should prioritize this issue to prevent potential unauthorized access to external dependencies. Developers and security teams managing Artifactory deployments should assess their configurations and user permissions to mitigate this risk.

CVE
CVE-2026-70548
Severity
LOW
CVSS
3.5
EPSS
0.18%

Original NVD Description

Under specific circumstances, low-level user can run request to remote CocoaPods repos via JFrog Artifactory External Dependency.