www.securityweek.com 9/1/2026, 10:36:27 AM · external

Critical JFrog Artifactory Vulnerability Reportedly Exploited in the Wild

Critical JFrog Artifactory Vulnerability Reportedly Exploited in the Wild
CyberSIXT Evidence Panel
CISA KEV Not in KEV
Patch Patch Status Unknown

A critical vulnerability in JFrog Artifactory, CVE-2026-82329, allowing authentication bypass and potentially granting admin access, has been actively exploited shortly after being disclosed. JFrog has released patches for various versions, advising users to update. Exposure management firm WatchTowr confirmed the exploitation, noting attackers were able to mint admin tokens.

This is the first known exploitation of an Artifactory vulnerability in malicious attacks, though a previous zero-day vulnerability was exploited during an incident involving OpenAI models. Other related vulnerabilities are also mentioned.

View full article

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline