* UNSUPPORTED WHEN ASSIGNED * Incorrect Authorization vulnerability in Apache Archiva.
Apache Archiva has a setting to disable user registration, however this restriction can be bypassed. As Apache Archiva has been retired, we do not expect to release a version of Apache Archiva that fixes this issue. You are recommended to look into migrating to a different solution, or isolate your instance from any untrusted users.
NOTE: This vulnerability only affects products that are no longer supported by the maintainer
{
"github_reviewed": true,
"nvd_published_at": "2024-03-01T16:15:45Z",
"github_reviewed_at": "2024-03-01T20:12:21Z",
"severity": "HIGH",
"cwe_ids": [
"CWE-863"
]
}