Cybersecurity · September 2, 2026
Security researchers at watchTowr report that attackers are already abusing a critical JFrog Artifactory vulnerability just days after a patch was released. Tracked as CVE-2026-82329 with a CVSS score of 9.8, the authentication-bypass flaw can let an attacker mint administrative tokens and take full control of an Artifactory instance under default configurations. The speed of exploitation is a reminder that patch windows for critical CI/CD infrastructure keep shrinking.
// source: thehackernews.com ↗