Another Artifactory CVE under attack by AI agents or humans
watchTowr said attackers are minting admin tokens on internet-exposed systems, raising the risk of build-pipeline tampering and malicious software updates.
7 Articles
7 Articles
JFrog Artifactory Flaw Opens Door to Supply Chain Takeovers as Attackers Mint Admin Tokens
Attackers are exploiting CVE-2026-82329 in JFrog Artifactory to mint admin tokens days after its August 28 patch release. The authentication bypass grants full control over artifact repositories under default settings. Self-hosted users must update immediately to versions like 7.161.20 while reviewing logs for compromise.
Researchers report the exploitation of a critical vulnerability of JFrog Artifactory against servers exposed to the Internet, with intruders able to generate administrator tokens and explore the access structure of organizations. Such a commitment could open the door to manipulating compilation processes, moving towards production systems and distributing malicious software to clients, although there is no confirmation that these scenarios have …
Attackers Exploit Critical JFrog Artifactory Flaw to Mint Admin Tokens Days After Disclosure
Threat actors are exploiting a newly patched critical security flaw impacting JFrog Artifactory merely days after public disclosure, according to watchTowr. The vulnerability in question is CVE-2026-82329 (CVSS score: 9.8), a case of authentication bypass that could lead to administrative access in Artifactory. "JFrog Artifactory contains an authentication weakness that, under default
JFrog Artifactory Auth Bypass Exploited in Attacks to Gain Admin Access
A critical authentication bypass vulnerability in JFrog Artifactory, tracked as CVE-2026-82329, is being actively exploited, allowing unauthenticated attackers with network access to gain administrator-level privileges. WatchTowr said its intelligence team has observed attackers exploiting the issue and “minting themselves admin tokens.” An attacker with a valid administrator token could control the affected Artifactory environment, including re…
Critical JFrog Artifactory Authentication Bypass Exploited in the Wild
Security researchers have issued warnings that attackers are actively exploiting a critical authentication bypass vulnerability in JFrog Artifactory,… Read more → The post Critical JFrog Artifactory Authentication Bypass Exploited in the Wild appeared first on IT Security News.
Coverage Details
Bias Distribution
- 100% of the sources are Center
Factuality
To view factuality data please Upgrade to Premium






