VulnSea

jfrog has 8 CVEs on record. Disclosure cadence is accelerating: 8 in the last 90 days against 0 in the 90 before. The busiest recent month was August 2026 with 6. The median CVSS is 7.8 (high). 25% have been exploited in the wild — well above the 1% corpus average, so jfrog flaws are worth patching on sight.

CVEs per month

Last 12 months, by publish date

101112010203040506070809
Exploited share
25% vs 1% corpus
Median CVSS
7.8
Publish → KEV
(2)
Last 90 days
8 prev 0

Products

  • artifactory 8
8
Total CVEs
0
Critical
2
CISA KEV
2
Exploited

jfrog vulnerabilities

CVEs affecting jfrog, newest first. Open any entry for full detail, references, and exploit status.

8 CVEsRSS

CVE-2026-42018High· 7.5CISA KEVPoC
1mo ago

Anonymous user token generation exposure in JFrog Artifactory

JFrog Artifactory could return an internal anonymous-user token to an unauthenticated caller when anonymous access is disabled, potentially exposing sensitive resources.

Abyssaljfrog · artifactoryEPSS 11%via CVEORG
CVE-2026-69106High· 8.8
1mo ago

A low-privileged user may poison cached artifact metadata under specific conditions, potentially causing consumers to retrieve untrusted content.

A low-privileged user may poison cached artifact metadata under specific conditions, potentially causing consumers to retrieve untrusted content.

Twilightjfrog · artifactoryEPSS 0.36%via NVD
CVE-2026-70547Medium· 4.3
1mo ago

An authenticated user without repository read permission may access package metadata under specific conditions.

An authenticated user without repository read permission may access package metadata under specific conditions.

Sunlitjfrog · artifactoryEPSS 0.20%via NVD
CVE-2026-69107Medium· 5.9
1mo ago

An unauthenticated user may access restricted artifacts in JFrog Artifactory under specific conditions.

An unauthenticated user may access restricted artifacts in JFrog Artifactory under specific conditions.

Sunlitjfrog · artifactoryEPSS 0.32%via NVD
CVE-2026-69105High· 8.1
1mo ago

An unauthenticated attacker may cause untrusted package content to be cached under specific conditions, potentially affecting artifact integrity and availability.

An unauthenticated attacker may cause untrusted package content to be cached under specific conditions, potentially affecting artifact integrity and availability.

Twilightjfrog · artifactoryEPSS 0.13%via NVD
CVE-2026-66016Medium· 6.7
1mo ago

Under specific self-hosted Helm configurations, generated TLS private keys may be retained in rendered manifests accessible to highly privileged local users.

Under specific self-hosted Helm configurations, generated TLS private keys may be retained in rendered manifests accessible to highly privileged local users.

Sunlitjfrog · artifactoryEPSS 0.09%via NVD
CVE-2026-66014High· 8.8
1mo ago

JFrog Artifactory contains an authentication handling weakness in internal request processing that, under specific conditions, may allow an attacker to escalate privileges beyond the intended access level.

JFrog Artifactory contains an authentication handling weakness in internal request processing that, under specific conditions, may allow an attacker to escalate privileges beyond the intended access level.

Twilightjfrog · artifactoryEPSS 0.64%via NVD
CVE-2026-42016High· 8.1CISA KEVPoC
1mo ago

Incorrect authorization validation of user token in JFrog Artifactory allows Privilege Escalation

JFrog Artifactory (Self Hosted) versions before 7.133.11 are vulnerable to a privilege escalation attack due to a validation check of the token signature/issuer and not the token’s scope.

Abyssaljfrog · artifactoryEPSS 9.1%via CVEORG
jfrog vulnerabilities (CVEs) · VulnSea