Artifactory Under Attack: In-the-Wild Exploitation of CVE-2026-42016, CVE-2026-42018 & CVE-2026-82329
wiz.io | vulnerability | #jfrog | #artifactory | #wiz | #cve-2026-42016 | #cve-2026-42018 | #cve-2026-82329 | #in-the-wild
Summary
Wiz Research documents exploitation of three Artifactory flaws (CVE-2026-42016, -42018, -82329), chained for auth bypass and admin takeover — planted admin accounts, Groovy plugins and Rust backdoors.
- Published
- Collected
Skip to content