Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
This was fixed in sigstore/sigstore v1.10.4: https://github.com/sigstore/sigstore/commit/8ec410a2993ea78083aecf0e473a85453039496e which is included in jfrog-cli v2.90.0
FEDORA-EPEL-2026-b5304cc714 (jfrog-cli-2.98.0-1.el9) has been submitted as an update to Fedora EPEL 9. https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2026-b5304cc714
FEDORA-EPEL-2026-b5304cc714 has been pushed to the Fedora EPEL 9 testing repository. You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2026-b5304cc714 See also https://fedoraproject.org/wiki/QA:Updates_Testing for more information on how to test updates.
FEDORA-EPEL-2026-b5304cc714 (jfrog-cli-2.98.0-1.el9) has been pushed to the Fedora EPEL 9 stable repository. If problem still persists, please make note of it in this bug report.