Cybersecurity from Málaga · Networks, lures and threats

CVE-2026-42018

JFrog Artifactory

Patch now: it is being exploited

JFrog Artifactory could return an internal anonymous-user token to an unauthenticated caller when anonymous access is disabled, potentially exposing sensitive resources.