Find notable cyber news and cases, enriched with sources, timelines, and signals.

JFrog Artifactory actively exploited authentication bypass (CVE-2026-82329)

Vulnerability
First reported
Last updated
Happening score
H score 56
2 unique sources, 2 articles

Summary

Hide ▲

CVE-2026-82329 is a critical authentication bypass in JFrog Artifactory that can let unauthenticated network attackers gain administrative privileges under default configuration. JFrog patched the flaw in Artifactory 7.161.20 on August 28, 2026, and the issue affects multiple self-managed release lines. The weakness sits in JFrog Access, where attackers can abuse credential-handling logic to mint admin-level access.

Related Happenings

JFrog Artifactory CVE-2026-42018/CVE-2026-42016 exploitation wave

Exploitation Wave
H score56 First: 11.09.2026 19:29 Last: 11.09.2026 19:29 Sources 1

About this happening: JFrog Artifactory is in an active exploitation wave involving CVE-2026-42018 and CVE-2026-42016, where attackers used the flaws to move from low-privilege access t...

JFrog Artifactory custom Rust backdoor deployment

Malware Activity
H score34 First: 11.09.2026 19:29 Last: 11.09.2026 19:29 Sources 1

About this happening: A custom Rust backdoor was dropped on compromised JFrog Artifactory servers, giving attackers C2-enabled remote control and persistence. The malware was deployed after...

JFrog Artifactory authentication bypass and token validation flaws (multiple vulnerabilities)

Vulnerability
H score56 First: 11.09.2026 19:29 Last: 11.09.2026 19:29 Sources 1

About this happening: JFrog Artifactory flaws CVE-2026-42018 and CVE-2026-42016 were tied to active exploitation against self-hosted servers, with attackers chaining them to bypass...

JFrog Artifactory CVE-2026-82329 exploitation wave

Exploitation Wave
H score55 First: 01.09.2026 20:53 Last: 01.09.2026 20:53 Sources 1

How related: A critical authentication bypass vulnerability (CVE-2026-82329) in JFrog Artifactory is being exploited in attacks to create tokens that provide administrative access.

About this happening: Threat actors are conducting an active exploitation wave against JFrog Artifactory systems through CVE-2026-82329, turning an authentication bypass into administ...

Timeline

  1. 01.09.2026 20:53 1 articles · 14d ago

    JFrog releases Artifactory 7.161.20 to patch CVE-2026-82329

    Mitigation Patch Update

    JFrog released Artifactory 7.161.20 on August 28, 2026 to fix CVE-2026-82329, an authentication bypass in JFrog Artifactory that could let an unauthenticated attacker with network access obtain administrative privileges under default configuration. The patch applied to affected self-managed release lines including 7.161.0 through 7.161.19, 7.146.0 through 7.146.36, 7.133.0 through 7.133.28, 7.125.0 through 7.125.19, 7.117.0 through 7.117.27, and 7.111.4 through 7.111.21.

    Show sources
  2. 01.09.2026 20:53 3 articles · 14d ago

    Threat actors weaponize CVE-2026-82329 to mint admin tokens in JFrog Artifactory

    Exploitation Observed

    Threat actors had begun weaponizing CVE-2026-82329 by September 1, 2026, using the JFrog Artifactory flaw to generate admin tokens and enumerate users, groups, credential sets, and federated access topologies. The issue sits in JFrog Access, and the reported behavior indicates that unauthenticated network access under default configurations can be turned into administrator-level access.

    Show sources