CVE-2026-82329
published 2026-08-28CVE-2026-82329: JFrog Artifactory contains an authentication weakness that, under default configuration, may allow an unauthenticated attacker with network access to obtain…
PriorityP194critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
KEVITWEXPLOITInitial access
CISA Known Exploited Vulnerabilitydue 2026-09-05
Exploited in the wild
EPSS
7.67%
94.2th percentile
JFrog Artifactory contains an authentication weakness that, under default configuration, may allow an unauthenticated attacker with network access to obtain administrative privileges.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| jfrog | artifactory | < 7.111.21 | 7.111.21 |
| jfrog | artifactory | >= 7.111.4 < 7.111.21 | 7.111.21 |
| jfrog | artifactory | >= 7.117.0 < 7.117.28 | 7.117.28 |
| jfrog | artifactory | >= 7.125.0 < 7.125.20 | 7.125.20 |
| jfrog | artifactory | >= 7.133.0 < 7.133.29 | 7.133.29 |
| jfrog | artifactory | >= 7.146.0 < 7.146.38 | 7.146.38 |
| jfrog | artifactory | >= 7.161.0 < 7.161.20 | 7.161.20 |
CVSS provenance
nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
vulncheck9.8CRITICAL
cisa9.8CRITICAL
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
JFrog Artifactory up to 7.161.19 privileges management
vuldb·2026-08-28·CVSS 9.8
CVE-2026-82329 [CRITICAL] JFrog Artifactory up to 7.161.19 privileges management
A vulnerability categorized as critical has been discovered in JFrog Artifactory up to 7.161.19. This impacts an unknown function. Executing a manipulation can lead to improper privilege management.
This vulnerability is tracked as CVE-2026-82329. The attack can be launched remotely. No exploit exists.
It is advisable to upgrade the affected component.
GHSA
JFrog Artifactory contains an authentication weakness that, under default configuration, may allow an unauthenticated attacker with network access to obtain administrative privileges.
ghsa_unreviewed·2026-08-28
CVE-2026-82329 [CRITICAL] CWE-287 JFrog Artifactory contains an authentication weakness that, under default configuration, may allow an unauthenticated attacker with network access to obtain administrative privileges.
JFrog Artifactory contains an authentication weakness that, under default configuration, may allow an unauthenticated attacker with network access to obtain administrative privileges.
VulnCheck
JFrog Artifactory Improper Authentication
vulncheck·2026·CVSS 9.8
CVE-2026-82329 [CRITICAL] JFrog Artifactory Improper Authentication
JFrog Artifactory Improper Authentication
JFrog Artifactory contains an authentication weakness that, under default configuration, may allow an unauthenticated attacker with network access to obtain administrative privileges.
Affected: JFrog Artifactory
Required Action: Apply remediations or mitigations per vendor instructions or discontinue use of the product if remediation or mitigations are unavailable.
Exploitation References: https://decipher.sc/2026/09/01/critical-artifactory-bug-under-attack/; https://previdian.com/CVE-2026-82329; https://x.com/watchtowrcyber/status/2094639075726668267
CISA
JFrog Artifactory Improper Authentication Vulnerability
cisa·2026-09-02·CVSS 9.8
CVE-2026-82329 [CRITICAL] CWE-287 JFrog Artifactory Improper Authentication Vulnerability
Vulnerability: JFrog Artifactory Improper Authentication Vulnerability
Affected: JFrog Artifactory
JFrog Artifactory contains an improper authentication vulnerability that under default configuration can allow an unauthenticated attacker with network access to obtain administrative privileges.
Required Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guideline
No detection rules found.
Nuclei
JFrog Artifactory Access Blank Join Key Authentication Bypass
nuclei·CVSS 9.8
CVE-2026-82329 [CRITICAL] JFrog Artifactory Access Blank Join Key Authentication Bypass
JFrog Artifactory Access Blank Join Key Authentication Bypass
JFrog Artifactory contains an authentication weakness that, under default configuration, may allow an unauthenticated attacker with network access to obtain administrative privileges.
Template:
id: CVE-2026-82329
info:
name: JFrog Artifactory Access Blank Join Key Authentication Bypass
author: johnk3r,pruva
severity: critical
description: |
JFrog Artifactory contains an authentication weakness that, under default configuration, may allow an unauthenticated attacker with network access to obtain administrative privileges.
impact: |
Unauthenticated attackers can gain administrative privileges, leading to full system control.
remediation: |
Update to the latest version and ensure secure configuration.
reference:
- https://jfrog
Checkpoint
7th September – Threat Intelligence Report
blogs_checkpoint·2026-09-07
CVE-2026-83548 7th September – Threat Intelligence Report
Latest Publications
CPR Podcast Channel
AI Research
Intelligence Reports
ThreatCloud AI
Threat Intelligence & Research
Zero Day Protection
Sandblast File Analysis
About Us
SUBSCRIBE
2026
2025
2024
2023
2022
2021
2020
2019
2018
2017
2016
## 7th September – Threat Intelligence Report
For the latest discoveries in cyber research for the week of 7th Setpember, please download our Threat Intelligence Bulletin.
TOP ATTACKS AND BREACHES
Thomson Reuters, a global information and technology company, has disclosed a breach of its C-Track court case-management platform affecting courts across 11 US states and Canada. An unauthorized party obtained C-Track files containing court records, including names and other personal information.
Hit, a major Slovenian gambling and tour
Hackernews
CISA Adds Seven Exploited Flaws as Attackers Deploy Reverse Shells and Crypto Miners
blogs_hackernews·2026-09-03·CVSS 6.5
CVE-2026-83548 [MEDIUM] CISA Adds Seven Exploited Flaws as Attackers Deploy Reverse Shells and Crypto Miners
Home
Threat Intelligence
Vulnerabilities
Cyber Attacks
Webinars
Expert Insights
Awards
Webinars
Awards
Free eBooks
About THN
Jobs
Advertise with us
## CISA Adds Seven Exploited Flaws as Attackers Deploy Reverse Shells and Crypto Miners
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added seven security flaws to its Known Exploited Vulnerabilities ( KEV ) catalog after they landed in attackers' crosshairs.
The vulnerabilities are as follows -
CVE-2026-83548 (CVSS score: 10.0) - A server-side request forgery vulnerability in SonicWall SMA 1000 Appliances that could allow a remote unauthenticated attacker to gain unauthorized access to sensitive functionality and perform unauthorized operations.
CVE-2026-83549 (CVSS score: 7.8) - A post-authen
Hackernews
Attackers Exploit Critical JFrog Artifactory Flaw to Mint Admin Tokens Days After Disclosure
blogs_hackernews·2026-09-01·CVSS 9.8
CVE-2026-82329 [CRITICAL] Attackers Exploit Critical JFrog Artifactory Flaw to Mint Admin Tokens Days After Disclosure
Home
Threat Intelligence
Vulnerabilities
Cyber Attacks
Webinars
Expert Insights
Awards
Webinars
Awards
Free eBooks
About THN
Jobs
Advertise with us
## Attackers Exploit Critical JFrog Artifactory Flaw to Mint Admin Tokens Days After Disclosure
Threat actors are exploiting a newly patched critical security flaw impacting JFrog Artifactory merely days after public disclosure, according to watchTowr .
The vulnerability in question is CVE-2026-82329 (CVSS score: 9.8), a case of authentication bypass that could lead to administrative access in Artifactory.
"JFrog Artifactory contains an authentication weakness that, under default configuration, may allow an unauthenticated attacker with network access to obtain administrative privileges," according to a description of the flaw
2026-08-28
Published
2026-09-02
Added to CISA KEV
Exploited in the wild