JFrog Artifactory actively exploited authentication bypass (CVE-2026-82329)
Vulnerability
Summary
Hide ▲
Show ▼
CVE-2026-82329 is a critical authentication bypass in JFrog Artifactory that can let unauthenticated network attackers gain administrative privileges under default configuration. JFrog patched the flaw in Artifactory 7.161.20 on August 28, 2026, and the issue affects multiple self-managed release lines. The weakness sits in JFrog Access, where attackers can abuse credential-handling logic to mint admin-level access.
Related Happenings
JFrog Artifactory CVE-2026-42018/CVE-2026-42016 exploitation wave
Exploitation Wave
H score56
First: 11.09.2026 19:29
Last: 11.09.2026 19:29
Sources 1
About this happening:
JFrog Artifactory is in an active exploitation wave involving CVE-2026-42018 and CVE-2026-42016, where attackers used the flaws to move from low-privilege access t...
JFrog Artifactory CVE-2026-42018/CVE-2026-42016 exploitation wave
Exploitation WaveAbout this happening: JFrog Artifactory is in an active exploitation wave involving CVE-2026-42018 and CVE-2026-42016, where attackers used the flaws to move from low-privilege access t...
JFrog Artifactory custom Rust backdoor deployment
Malware Activity
H score34
First: 11.09.2026 19:29
Last: 11.09.2026 19:29
Sources 1
About this happening:
A custom Rust backdoor was dropped on compromised JFrog Artifactory servers, giving attackers C2-enabled remote control and persistence. The malware was deployed after...
JFrog Artifactory custom Rust backdoor deployment
Malware ActivityAbout this happening: A custom Rust backdoor was dropped on compromised JFrog Artifactory servers, giving attackers C2-enabled remote control and persistence. The malware was deployed after...
JFrog Artifactory authentication bypass and token validation flaws (multiple vulnerabilities)
Vulnerability
H score56
First: 11.09.2026 19:29
Last: 11.09.2026 19:29
Sources 1
About this happening:
JFrog Artifactory flaws CVE-2026-42018 and CVE-2026-42016 were tied to active exploitation against self-hosted servers, with attackers chaining them to bypass...
JFrog Artifactory authentication bypass and token validation flaws (multiple vulnerabilities)
VulnerabilityAbout this happening: JFrog Artifactory flaws CVE-2026-42018 and CVE-2026-42016 were tied to active exploitation against self-hosted servers, with attackers chaining them to bypass...
JFrog Artifactory CVE-2026-82329 exploitation wave
Exploitation Wave
H score55
First: 01.09.2026 20:53
Last: 01.09.2026 20:53
Sources 1
How related:
A critical authentication bypass vulnerability (CVE-2026-82329) in JFrog Artifactory is being exploited in attacks to create tokens that provide administrative access.
About this happening:
Threat actors are conducting an active exploitation wave against JFrog Artifactory systems through CVE-2026-82329, turning an authentication bypass into administ...
JFrog Artifactory CVE-2026-82329 exploitation wave
Exploitation WaveHow related: A critical authentication bypass vulnerability (CVE-2026-82329) in JFrog Artifactory is being exploited in attacks to create tokens that provide administrative access.
About this happening: Threat actors are conducting an active exploitation wave against JFrog Artifactory systems through CVE-2026-82329, turning an authentication bypass into administ...
Timeline
-
01.09.2026 20:53 1 articles · 14d ago
JFrog releases Artifactory 7.161.20 to patch CVE-2026-82329
Mitigation Patch UpdateJFrog released Artifactory 7.161.20 on August 28, 2026 to fix CVE-2026-82329, an authentication bypass in JFrog Artifactory that could let an unauthenticated attacker with network access obtain administrative privileges under default configuration. The patch applied to affected self-managed release lines including 7.161.0 through 7.161.19, 7.146.0 through 7.146.36, 7.133.0 through 7.133.28, 7.125.0 through 7.125.19, 7.117.0 through 7.117.27, and 7.111.4 through 7.111.21.
Show sources
- Attackers Exploit Critical JFrog Artifactory Flaw to Mint Admin Tokens Days After Disclosure — thehackernews.com — 01.09.2026 20:53
-
01.09.2026 20:53 3 articles · 14d ago
Threat actors weaponize CVE-2026-82329 to mint admin tokens in JFrog Artifactory
Exploitation ObservedThreat actors had begun weaponizing CVE-2026-82329 by September 1, 2026, using the JFrog Artifactory flaw to generate admin tokens and enumerate users, groups, credential sets, and federated access topologies. The issue sits in JFrog Access, and the reported behavior indicates that unauthenticated network access under default configurations can be turned into administrator-level access.
Show sources
- Attackers Exploit Critical JFrog Artifactory Flaw to Mint Admin Tokens Days After Disclosure — thehackernews.com — 01.09.2026 20:53
- Attackers Exploit Critical JFrog Artifactory Flaw to Mint Admin Tokens Days After Disclosure — thehackernews.com — 01.09.2026 20:53
- Hackers exploit critical JFrog Artifactory flaw to forge admin tokens — www.bleepingcomputer.com — 02.09.2026 18:47