JFrog Artifactory Vulnerabilities Actively Exploited in the Wild to Gain Administrative Control
ID: 4f0dca6f-6eb9-50d6-a89c-7f7220dadbea
STIX ID: report--4f0dca6f-6eb9-50d6-a89c-7f7220dadbea
Feed Name: cybersecurityNews.com
Wiz observed active exploitation of three critical JFrog Artifactory vulnerabilities that enable authentication bypass and token scope abuse, allowing attackers to mint administrator tokens, create persistent admin accounts, deploy malicious Groovy plugins, execute commands, and install backdoors; the report includes observed timelines, IOCs (IPs, payload URLs, file hashes, account names), affected versions and recommended upgrades, and notes broad cloud exposure with a large percentage of instances vulnerable at disclosure.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
