OpenInfra Europe's JFrog Artifactory breached, packages may be compromised
OpenInfra Europe disclosed that its self-hosted JFrog Artifactory instance was compromised via authentication bypass CVE-2026-82329, giving attackers admin privileges. Artifacts downloaded from artifactory.nordix.org between August 28 and September 15, 2026 should be treated as potentially compromised.
- Attackers exploited CVE-2026-82329, an authentication bypass in JFrog Artifactory
- Breach occurred August 31, discovered September 15, 2026
- Artifacts pulled from artifactory.nordix.org between August 28 and September 15 are affected
- CVE-2026-82329 was added to CISA's Known Exploited Vulnerabilities catalog on September 2
Read next
Security