CVE-2026-42018

JFrog Artifactory · CISA Known Exploited Vulnerability · NIST NVD ↗

JFrog Artifactory contains an improper authentication vulnerability that could return an internal anonymous-user token to an unauthenticated caller when anonymous access is disabled, potentially exposing sensitive resources.

2026-09-11
Published
2026-09-25
CISA remediate by

Sources