chiprook
← Security
SecuritySeptember 29, 2026, 02:00

Three Artifactory flaws under active exploitation allow auth bypass and admin access

Wiz.io disclosed three Artifactory vulnerabilities that are being actively exploited to bypass authentication and gain administrator access on self-hosted deployments in under five minutes. Patches are available in versions 7.111.21, 7.117.28, 7.125.20, 7.133.29, 7.146.38, 7.161.20 and newer.

Three Artifactory flaws under active exploitation allow auth bypass and admin access
#Artifactory#Wiz
Read next
Security

CISA adds JFrog Artifactory auth bypass to exploited vulnerabilities list

Security

LiteLLM auth bypass: a one-character token unlocked MCP tools

Security

Active exploitation attempts target WSO2 API Manager JWT bypass

Security

Default Join Key Let Attackers Mint Admin Tokens on JFrog Artifactory