jfrog News Articles

Recent news articles refferecing the vendors vulnerabilities.

More JFrog Artifactory bugs under attack, and all 3 have patches

If you're waiting for a sign to upgrade to a fixed version: this is it

11 hours ago

Artifactory flaws chained in attacks deploying backdoor malware

Threat actors are exploiting critical and high-severity vulnerabilities in JFrog Artifactory to bypass authentication, gain administrative privileges, and deploy a Rust backdoor on vulnerable self-hosted servers.

12 hours ago

Attackers Chain JFrog Artifactory Flaws to Gain Admin Control and Plant Backdoors

Attackers chained two JFrog Artifactory flaws on unupdated servers to gain admin control, while a third flaw was exploited separately.

21 hours ago

Attackers Exploit CVE-2026-82329 to Forge JFrog Artifactory Admin Tokens - IT Security News

Cybersecurity researchers have observed attackers exploiting a critical JFrog Artifactory vulnerability shortly after its public disclosure. The flaw allows unauthenticated attackers to obtain administrative...

1 week ago

Hackers exploit critical JFrog Artifactory flaw to forge admin tokens

A critical authentication bypass vulnerability (CVE-2026-82329) in JFrog Artifactory is being exploited in attacks to create tokens that provide administrative access.

1 week ago

Critical JFrog Artifactory Vulnerability Reportedly Exploited in the Wild

Exploitation of the JFrog Artifactory authentication bypass vulnerability CVE-2026-82329 started just days after its public disclosure.

1 week ago

Attackers Jump on Critical Artifactory Flaw After Disclosure

CVE-2026-82329 is an authentication bypass flaw in JFrog's repository manager that enables bad actors to gain admin level access on affected systems.

1 week ago

JFrog Artifactory Flaw Opens Door to Supply Chain Takeovers as Attackers Mint Admin Tokens

Attackers are exploiting CVE-2026-82329 in JFrog Artifactory to mint admin tokens days after its August 28 patch release. The authentication bypass grants full control over artifact repositories under default settings. Self-hosted users must update immediately to versions like 7.161.20 while reviewi...

1 week ago

Attackers Exploit Critical JFrog Artifactory Flaw to Mint Admin Tokens Days After Disclosure - SwapUpdate

Ravie LakshmananSep 01, 2026Vulnerability / Supply Chain Attack

1 week ago

Attackers Exploit Critical JFrog Artifactory Flaw to Mint Admin Tokens Days After Disclosure

Attackers exploit a JFrog Artifactory authentication bypass to mint admin tokens and enumerate users on default configurations.

1 week ago

JFrog Artifactory Auth Bypass Exploited in Attacks to Gain Admin Access

A critical authentication bypass vulnerability in JFrog Artifactory, tracked as CVE-2026-82329, is being actively exploited, allowing unauthenticated attackers with network access to gain administrator-level privileges. WatchTowr said its intelligence team has observed attackers exploiting the issue...

2 weeks ago

Vanna AI Vulnerability: Remote Code Execution (CVE-2024-5565)

The Vanna AI vulnerability exposes SQL databases to remote code execution (RCE) via prompt injection.

Prompt Injection Flaw in Vanna AI Exposes Databases to RCE Attacks

Discover how a critical flaw in Vanna.AI library exposes databases to remote code execution and the growing risks of AI prompt injection attacks.

No more news articles to load.