An active exploitation of three JFrog Artifactory vulnerabilities that attackers are using to bypass authentication, elevate privileges, and take administrative control of exposed servers. The flaws, tracked as CVE-2026-42016, CVE-2026-42018, and CVE-2026-82329, affect multiple Artifactory release branches and create a serious supply-chain security risk. Attackers have already targeted self-hosted Artifactory deployments, creating persistent administrator accounts, […]
Read the original article: