cyber Translated · English · 2–5m lag

CVE-2026-42016 — JFrog Artifactory Incorrect Authorization Vulnerability

JFrog Artifactory contains an incorrect authorization vulnerability that allows leads to privilege escalation attack due to a validation check of the token signature/issuer and not the token’s scope.

Reported by CISA KEV
Read the complete report at CISA KEV
Verification notice

IntelMap indexes open-source reporting. This page identifies what a source reported; it does not independently confirm the claim.

INCIDENT EVOLUTION

1 recorded state

Signal first indexedP3 · 98% quality · 1 source

Explore this day in the archive →
QUALITY CONTROL

Report this signal

Reports are anonymous and retained privately for editorial review.