CVE-2026-42018
JFrog Artifactory
Patch now: it is being exploited
JFrog Artifactory could return an internal anonymous-user token to an unauthenticated caller when anonymous access is disabled, potentially exposing sensitive resources.
Cybersecurity from Málaga · Networks, lures and threats
JFrog Artifactory
Patch now: it is being exploited
JFrog Artifactory could return an internal anonymous-user token to an unauthenticated caller when anonymous access is disabled, potentially exposing sensitive resources.