logo

JFrog Artifactory Vulnerabilities Actively Exploited in the Wild to Gain Administrative Control

ID: 4f0dca6f-6eb9-50d6-a89c-7f7220dadbea

STIX ID: report--4f0dca6f-6eb9-50d6-a89c-7f7220dadbea

Feed Name: cybersecurityNews.com

Threat Score
90/100

Date Published: 2026-09-11

Date Updated: 2026-09-11

Author: Abinaya

...
...

Wiz observed active exploitation of three critical JFrog Artifactory vulnerabilities that enable authentication bypass and token scope abuse, allowing attackers to mint administrator tokens, create persistent admin accounts, deploy malicious Groovy plugins, execute commands, and install backdoors; the report includes observed timelines, IOCs (IPs, payload URLs, file hashes, account names), affected versions and recommended upgrades, and notes broad cloud exposure with a large percentage of instances vulnerable at disclosure.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.