#5
The Hacker News
general
September 01, 2026 at 17:53 UTC
Attackers Exploit Critical JFrog Artifactory Flaw to Mint Admin Tokens Days After Disclosure
By [email protected] (The Hacker News)
AI Summary
CVE-2026-82329, a CVSS 9.8 authentication bypass in JFrog Artifactory, is being actively exploited just days after public disclosure, with attackers forging administrative tokens on affected instances. Watchtowr confirmed in-the-wild exploitation, noting the flaw stems from an authentication weakness present in default configurations. JFrog Artifactory is a widely used artifact repository in CI/CD pipelines, and admin-level compromise could enable supply chain attacks via poisoned build artifacts.
Relevance score: 84.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →