jfrog News Articles
Recent news articles refferecing the vendors vulnerabilities.
More JFrog Artifactory bugs under attack, and all 3 have patches
If you're waiting for a sign to upgrade to a fixed version: this is it
11 hours ago
Artifactory flaws chained in attacks deploying backdoor malware
Threat actors are exploiting critical and high-severity vulnerabilities in JFrog Artifactory to bypass authentication, gain administrative privileges, and deploy a Rust backdoor on vulnerable self-hosted servers.
12 hours ago
Attackers Chain JFrog Artifactory Flaws to Gain Admin Control and Plant Backdoors
Attackers chained two JFrog Artifactory flaws on unupdated servers to gain admin control, while a third flaw was exploited separately.
21 hours ago
Attackers Exploit CVE-2026-82329 to Forge JFrog Artifactory Admin Tokens - IT Security News
Cybersecurity researchers have observed attackers exploiting a critical JFrog Artifactory vulnerability shortly after its public disclosure. The flaw allows unauthenticated attackers to obtain administrative...
1 week ago
Hackers exploit critical JFrog Artifactory flaw to forge admin tokens
A critical authentication bypass vulnerability (CVE-2026-82329) in JFrog Artifactory is being exploited in attacks to create tokens that provide administrative access.
1 week ago
Critical JFrog Artifactory Vulnerability Reportedly Exploited in the Wild
Exploitation of the JFrog Artifactory authentication bypass vulnerability CVE-2026-82329 started just days after its public disclosure.
1 week ago
Attackers Jump on Critical Artifactory Flaw After Disclosure
CVE-2026-82329 is an authentication bypass flaw in JFrog's repository manager that enables bad actors to gain admin level access on affected systems.
1 week ago
JFrog Artifactory Flaw Opens Door to Supply Chain Takeovers as Attackers Mint Admin Tokens
Attackers are exploiting CVE-2026-82329 in JFrog Artifactory to mint admin tokens days after its August 28 patch release. The authentication bypass grants full control over artifact repositories under default settings. Self-hosted users must update immediately to versions like 7.161.20 while reviewi...
1 week ago
Attackers Exploit Critical JFrog Artifactory Flaw to Mint Admin Tokens Days After Disclosure - SwapUpdate
Ravie LakshmananSep 01, 2026Vulnerability / Supply Chain Attack
1 week ago
Attackers Exploit Critical JFrog Artifactory Flaw to Mint Admin Tokens Days After Disclosure
Attackers exploit a JFrog Artifactory authentication bypass to mint admin tokens and enumerate users on default configurations.
1 week ago
JFrog Artifactory Auth Bypass Exploited in Attacks to Gain Admin Access
A critical authentication bypass vulnerability in JFrog Artifactory, tracked as CVE-2026-82329, is being actively exploited, allowing unauthenticated attackers with network access to gain administrator-level privileges. WatchTowr said its intelligence team has observed attackers exploiting the issue...
2 weeks ago

Vanna AI Vulnerability: Remote Code Execution (CVE-2024-5565)
The Vanna AI vulnerability exposes SQL databases to remote code execution (RCE) via prompt injection.
Prompt Injection Flaw in Vanna AI Exposes Databases to RCE Attacks
Discover how a critical flaw in Vanna.AI library exposes databases to remote code execution and the growing risks of AI prompt injection attacks.