Close Menu

    Subscribe to Updates

    Get the latest Tech news from SynapseFlow

    What's Hot

    Three JFrog Artifactory Flaws Exploited for Backdoor Deployment

    September 14, 2026

    World GDP AI&ROBOTS Purchasing Power Parity 2024 to 2037 – by Country – NextBigFuture.com

    September 14, 2026

    Oppo Find X10 series launch date, colors and storage options revealed

    September 14, 2026
    Facebook X (Twitter) Instagram
    • Homepage
    • About Us
    • Contact Us
    • Privacy Policy
    Facebook X (Twitter) Instagram YouTube
    synapseflow.co.uksynapseflow.co.uk
    • AI News & Updates
    • Cybersecurity
    • Future Tech
    • Reviews
    • Software & Apps
    • Tech Gadgets
    synapseflow.co.uksynapseflow.co.uk
    Home»Cybersecurity»Three JFrog Artifactory Flaws Exploited for Backdoor Deployment
    Three JFrog Artifactory Flaws Exploited for Backdoor Deployment
    Cybersecurity

    Three JFrog Artifactory Flaws Exploited for Backdoor Deployment

    The Tech GuyBy The Tech GuySeptember 14, 2026No Comments2 Mins Read0 Views
    Share
    Facebook Twitter LinkedIn Pinterest Email
    Advertisement


    Threat actors have been exploiting three high-severity vulnerabilities in JFrog Artifactory to compromise deployments and install backdoors, cybersecurity firm Wiz reports.

    Advertisement

    Many organizations use Artifactory to manage software artifacts, binaries, AI models, containers, and packages.

    The three flaws, CVE-2026-42016, CVE-2026-42018, and CVE-2026-82329, can allow attackers to bypass authentication and gain administrative privileges on vulnerable Artifactory instances.

    An improper authentication bug patched on August 12, CVE-2026-42018 can be exploited to obtain an anonymous-user token that provides access to sensitive artifacts and repository data. 

    Patched on July 27, CVE-2026-42016 is an insufficient token validation issue that can be exploited for privilege escalation.

    CVE-2026-82329 is an authentication bypass patched on August 28 that could be exploited remotely without authentication to gain administrative privileges. In-the-wild exploitation was reported a few days later.

    Advertisement. Scroll to continue reading.

    According to Wiz, CVE-2026-42018 and CVE-2026-42016 have been chained together since mid-August to obtain the anonymous-user token and then use it to elevate privileges to administrator.

    “Between August 15 and September 8, 2026, we observed multiple actors chain CVE-2026-42018 and CVE-2026-42016 against self-hosted Artifactory instances,” Wiz says.

    The hackers were seen deploying persistent admin accounts, installing malicious plugins to gain arbitrary code execution, running shell commands through the plugin endpoint, dropping second-stage payloads, and occasionally updating the scripts for continuous access.

    Multiple threat actors also started exploiting CVE-2026-82329 in the first week of September, for configuration exfiltration, persistent admin access, token minting, cluster key exfiltration, and asset enumeration.

    In some instances, the attackers were seen attaching their own SSH keys to the user accounts they created.

    On Friday, CISA added CVE-2026-42018 and CVE-2026-42016 to its KEV catalog, one week after it added CVE-2026-82329 to the list. In line with BOD 26-04, federal agencies were given two weeks to patch their vulnerable instances.

    All organizations are advised to update their self-managed Artifactory deployments to versions 7.161.20, 7.146.38, 7.133.29, 7.125.20, 7.117.28, or 7.111.21 as soon as possible.

    Related: GitLab Vulnerability Exploited One Day After Disclosure

    Related: Fortinet Code Execution Flaw Exploited in PivotC2 RAT Attacks

    Related: PaperCut Flaws Exploited in AI-Powered Attacks

    Related: Critical NetScaler Vulnerability Exploited in Attacks

    Advertisement
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    The Tech Guy
    • Website

    Related Posts

    Kiteworks Acquires Bonfy.AI to Fill the AI Gap in Data Governance

    September 13, 2026

    Anthropic CEO Dario Amodei Says AI Industry Needs to Give Safety Measures Time to Catch Up

    September 13, 2026

    Check Point Patches Critical VPN Vulnerabilities

    September 13, 2026

    Ukrainian Conti Ransomware Developer Sentenced to 4 Years in US Prison

    September 13, 2026

    Trezor Says 347,000 Users Received Phishing Emails After Brevo Hack

    September 12, 2026

    BlueMoon Exploit Kit Chains Recent Chrome, Windows Zero-Days

    September 12, 2026
    Leave A Reply Cancel Reply

    Advertisement
    Top Posts

    You don’t need a NAS to self-host — I proved it with hardware from my closet

    June 7, 2026391 Views

    Spotify is giving one of its best playlists a big visual upgrade to give subscribers ‘a closer connection’ to its New Music Friday curators — and I think it could be the update it’s always needed

    June 12, 2026210 Views

    The iPad Air brand makes no sense – it needs a rethink

    October 12, 202517 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Advertisement
    About Us
    About Us

    SynapseFlow brings you the latest updates in Technology, AI, and Gadgets from innovations and reviews to future trends. Stay smart, stay updated with the tech world every day!

    Our Picks

    Three JFrog Artifactory Flaws Exploited for Backdoor Deployment

    September 14, 2026

    World GDP AI&ROBOTS Purchasing Power Parity 2024 to 2037 – by Country – NextBigFuture.com

    September 14, 2026

    Oppo Find X10 series launch date, colors and storage options revealed

    September 14, 2026
    categories
    • AI News & Updates
    • Cybersecurity
    • Future Tech
    • Reviews
    • Software & Apps
    • Tech Gadgets
    Facebook X (Twitter) Instagram Pinterest YouTube Dribbble
    • Homepage
    • About Us
    • Contact Us
    • Privacy Policy
    © 2026 SynapseFlow All Rights Reserved.

    Type above and press Enter to search. Press Esc to cancel.

    Ad Blocker Enabled!
    Ad Blocker Enabled!
    Our website is made possible by displaying online advertisements to our visitors. Please support us by disabling your Ad Blocker.